7.5
CVSSv2

CVE-2010-4735

Published: 16/02/2011 Updated: 16/02/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in shoppingcart.asp in Ecommercemax Solutions Digital-goods seller (DGS) 1.5 allows remote malicious users to execute arbitrary SQL commands via the d parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

ecommercemax digital-goods seller 1.5

Exploits

# Author: R4dc0re # Exploit Title:Ecommercemax Solutions Digital good seller Sql Injection Vulnerablity # Date: 05-12-2010 # Vendor or Software Link:wwwecommercemaxcom/ # Category:WebApp # Version:15 # Price:60$ # Contact: R4dc0re@yahoofr # Website: www1337dbcom # Greetings to: R0073r(1337dbcom), L0rd CrusAd3r,Sid3^effects and to res ...