Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2000-1092 | 1 Alex Heiphetz Group | 1 Ezshopper | 2024-11-20 | 5.0 MEDIUM | N/A |
loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data directory by inserting a "/" in front of the target filename in the "file" parameter. | |||||
CVE-2000-0188 | 1 Alex Heiphetz Group | 1 Ezshopper | 2024-11-20 | 7.5 HIGH | N/A |
EZShopper 3.0 search.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via shell metacharacters. | |||||
CVE-2000-0187 | 1 Alex Heiphetz Group | 1 Ezshopper | 2024-11-20 | 7.5 HIGH | N/A |
EZShopper 3.0 loadpage.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via shell metacharacters. |