Vulnerabilities
Vulnerable Software
Spidersales:  >> Spidersales  >> 2.0  Security Vulnerabilities
SQL injection vulnerability in viewCart.asp in SpiderSales shopping cart software allows remote attackers to execute arbitrary SQL via the userId parameter.
CVSS Score
10.0
EPSS Score
0.033
Published
2004-11-23
SpiderSales shopping cart does not enforce a minimum length for the private key, which can make it easier for local users to obtain the private key by factoring.
CVSS Score
2.1
EPSS Score
0.005
Published
2004-11-23
Spider Sales shopping cart stores the private key in the same database and table as the public key, which allows local users with access to the database to decrypt data.
CVSS Score
2.1
EPSS Score
0.005
Published
2004-11-23


Contact Us

Shodan ® - All rights reserved