SQL injection vulnerability in (1) mailorder.asp or (2) payonline.asp in CactuShop 5.x allows remote malicious users to execute arbitrary SQL commands via the strItems parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cactusoft cactushop 5.0 |
||
cactusoft cactushop 5.1 |