Craig Dansie Dansie Shopping Cart vulnerabilities
3 known vulnerabilities affecting craig_dansie/dansie_shopping_cart.
Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2000-0254P4MEDIUMCVSS 5.0PoCv3.0.42000-04-14
CVE-2000-0254 [MEDIUM] CVE-2000-0254: The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart dat
The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db, or vars form variables.
nvd
CVE-2000-0253P4CRITICALCVSS 10.0v3.0.42000-04-11
CVE-2000-0253 [CRITICAL] CVE-2000-0253: The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase in
The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields.
nvd
CVE-2000-0252P4MEDIUMCVSS 5.0v3.0.42000-04-11
CVE-2000-0252 [MEDIUM] CVE-2000-0252: The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell
The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a form variable.
nvd