Vulnerabilities (CVE)

Filtered by vendor Cyberstrong Subscribe
Filtered by product Eshop
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-0509 1 Cyberstrong 1 Eshop 2024-02-04 10.0 HIGH N/A
SQL injection vulnerability in Cyberstrong eShop 4.2 and earlier allows remote attackers to steal authentication information and gain privileges via the ProductCode parameter in (1) 10expand.asp, (2) 10browse.asp, and (3) 20review.asp.