CVE-2015-2183
10.03.2015, 14:59
Multiple SQL injection vulnerabilities in the administrative backend in ZeusCart 4 allow remote administrators to execute arbitrary SQL commands via the id parameter in a (1) disporders detail or (2) subadminmgt edit action or (3) cid parameter in an editcurrency action to admin/.
Vendor | Product | Version |
---|---|---|
zeuscart | zeuscart | 4.0 |
𝑥
= Vulnerable software versions
References