4.3
CVSSv2

CVE-2008-6757

Published: 28/04/2009 Updated: 11/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in manuals_search.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote malicious users to inject arbitrary web script or HTML via the manuals_search parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

viart viart shop 3.5

Exploits

source: wwwsecurityfocuscom/bid/33043/info ViArt Shop is prone to multiple remote vulnerabilities: - Multiple cross-site scripting vulnerabilities - An information-disclosure vulnerability - An authentication-bypass vulnerability An attacker can exploit these issues to execute arbitrary script code, steal cookie-based authentication cr ...