7.5
CVSSv2

CVE-2005-0962

Published: 02/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in index.php for Lighthouse Squirrelcart allows remote malicious users to execute arbitrary SQL commands via the (1) crn parameter in a show action or (2) rn parameter in a show_detail action.

Vulnerable Product Search on Vulmon Subscribe to Product

lighthouse development squirrelcart 1.5.5

Exploits

source: wwwsecurityfocuscom/bid/12944/info Squirrelcart is affected by an SQL injection vulnerability This vulnerability could permit remote attackers to pass malicious input to database queries, resulting in modification of query logic or other attacks Squirrelcart 155 and prior versions are vulnerable to this issue wwwe ...