CVE-2004-2108

Multiple SQL injection vulnerabilities in QuadComm Q-Shop allow remote attackers to execute arbitrary SQL commands via certain parameters to (1) search.asp, (2) browse.asp, (3) details.asp, (4) showcat.asp, (5) users.asp, (6) addtomylist.asp, (7) modline.asp, (8) cart.asp, or (9) newuser.asp.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:quadcomm:q-shop:2.0:*:*:*:*:*:*:*
cpe:2.3:a:quadcomm:q-shop:2.1:*:*:*:*:*:*:*
cpe:2.3:a:quadcomm:q-shop:2.5:*:*:*:*:*:*:*
cpe:2.3:a:quadcomm:q-shop:2.5_beta:*:*:*:*:*:*:*

History

20 Nov 2024, 23:52

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=107488132208229&w=2 - () http://marc.info/?l=bugtraq&m=107488132208229&w=2 -
References () http://secunia.com/advisories/10704 - () http://secunia.com/advisories/10704 -
References () http://securitytracker.com/alerts/2004/Jan/1008837.html - () http://securitytracker.com/alerts/2004/Jan/1008837.html -
References () http://www.osvdb.org/3698 - () http://www.osvdb.org/3698 -
References () http://www.osvdb.org/3699 - () http://www.osvdb.org/3699 -
References () http://www.osvdb.org/3700 - () http://www.osvdb.org/3700 -
References () http://www.osvdb.org/3701 - () http://www.osvdb.org/3701 -
References () http://www.osvdb.org/3702 - () http://www.osvdb.org/3702 -
References () http://www.osvdb.org/3703 - () http://www.osvdb.org/3703 -
References () http://www.osvdb.org/3704 - () http://www.osvdb.org/3704 -
References () http://www.osvdb.org/3705 - () http://www.osvdb.org/3705 -
References () http://www.osvdb.org/3706 - () http://www.osvdb.org/3706 -
References () http://www.s-quadra.com/advisories/Adv-20040123.txt - Exploit () http://www.s-quadra.com/advisories/Adv-20040123.txt - Exploit
References () http://www.securityfocus.com/bid/9481 - Exploit () http://www.securityfocus.com/bid/9481 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/14922 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/14922 -

Information

Published : 2004-12-31 05:00

Updated : 2024-11-20 23:52


NVD link : CVE-2004-2108

Mitre link : CVE-2004-2108

CVE.ORG link : CVE-2004-2108


JSON object : View

Products Affected

quadcomm

  • q-shop