Vulnerabilities (CVE)

Filtered by vendor Iscripts Subscribe
Filtered by product Multicart
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-0911 1 Iscripts 1 Multicart 2024-02-04 6.5 MEDIUM N/A
SQL injection vulnerability in productdetails.php in iScripts MultiCart 2.0 allows remote authenticated users to execute arbitrary SQL commands via the productid parameter.
CVE-2007-5261 1 Iscripts 1 Multicart 2024-02-04 6.4 MEDIUM N/A
Multiple SQL injection vulnerabilities in MultiCart 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) catid parameter to categorydetail.php and the (2) ddlCategory parameter to search.php.