Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-0985

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2001-0985
Last Modified 05 Sep 2008 04:25:24
Published 08 Sep 2001 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2001-0985

Summary

shop.pl in Hassan Consulting Shopping Cart 1.23 allows remote attackers to execute arbitrary commands via shell metacharacters in the "page" parameter.

Vulnerable Systems

Application

  • Hassan Consulting Shopping Cart 1.23


References

MISC - http://www.irata.com/shopver.html

XF - hassan-cart-command-execution(7106)

BID - 3308

BUGTRAQ - 20010908 Shopping Cart Version 1.23


Last Updated: 27 May 2016 10:36:28