CVE-2004-1873
CVE-2004-1873
SQL injection vulnerability in category.asp in A-CART Pro and A-CART 2.0 allows remote attackers to gain privileges via the catcode parameter.
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/29085unverifiedexploitdbwww.exploit-db.com/exploits/23891unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://marc.info/?l=bugtraq&m=108057887008983&w=2http://s-a-p.ca/index.php?page=OurAdvisories&id=27http://secunia.com/advisories/11236https://exchange.xforce.ibmcloud.com/vulnerabilities/15661http://www.aria-security.com/forum/showthread.php?t=31http://www.aria-security.com/forum/showthread.php?t=32http://www.securityfocus.com/archive/1/451594/100/100/threadedhttp://www.securityfocus.com/archive/1/452005/100/0/threadedhttp://www.securityfocus.com/archive/1/452006/100/0/threadedhttp://www.securityfocus.com/archive/1/452023/100/0/threadedhttp://www.securityfocus.com/bid/9997