|
Family: CGI abuses --> Category: infos
Multiple phpShop Vulnerabilities Vulnerability Scan
Vulnerability Scan Summary Detect phpShop SQL Injection
Detailed Explanation for this Vulnerability Test
Synopsis :
The remote web server contains several PHP scripts that suffer from
multiple vulnerabilities.
Description :
The remote host is running phpShop, a PHP-based e-commerce application
and PHP development framework.
Multiple vulnerabilities have been discovered in this product, which may
allow a remote attacker to send arbitrary SQL commands to the remote
database, or to insert malicious HTML and/or JavaScript into existing
pages.
See also :
http://www.securityfocus.com/archive/1/350026
Solution :
Upgrade to the latest version of phpShop.
Threat Level:
Medium / CVSS Base Score : 5
(AV:R/AC:L/Au:NR/C:P/A:N/I:P/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|