5
CVSSv2

CVE-2004-0293

Published: 23/11/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 510
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in ShopCartCGI 2.3 allows remote malicious users to retrieve arbitrary files via a .. (dot dot) in a HTTP request to (1) gotopage.cgi or (2) genindexpage.cgi.

Vulnerable Product Search on Vulmon Subscribe to Product

shopcartcgi shopcartcgi 2.3

Exploits

source: wwwsecurityfocuscom/bid/9670/info It has been reported that ShopcartCGI is prone to a remote file disclosure vulnerability This issue is due to insufficient validation of user-supplied input Upon successful exploitation of this issue an attacker may be able to gain access to sensitive system files, potentially facilitating furt ...
source: wwwsecurityfocuscom/bid/9670/info It has been reported that ShopcartCGI is prone to a remote file disclosure vulnerability This issue is due to insufficient validation of user-supplied input Upon successful exploitation of this issue an attacker may be able to gain access to sensitive system files, potentially facilitating fu ...