Back to search
CVE-2005-1161
Published: Apr 18, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple SQL injection vulnerabilities in OneWorldStore allow remote attackers to execute arbitrary SQL commands via the idProduct parameter to (1) owAddItem.asp or (2) owProductDetail.asp, (3) idCategory parameter to owListProduct.asp, or (4) bSpecials parameter to owListProduct.asp.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1013720
vdb-entry
x_refsource_SECTRACK
13183
vdb-entry
x_refsource_BID
13182
vdb-entry
x_refsource_BID
15518
vdb-entry
x_refsource_OSVDB
15520
vdb-entry
x_refsource_OSVDB
oneworldstore-product-category-sql-injection(20097)
vdb-entry
x_refsource_XF
13181
vdb-entry
x_refsource_BID
15519
vdb-entry
x_refsource_OSVDB
20050414 Multiple multiple sql injection/errors and xss vulnerabilities in OneWorldStore
mailing-list
x_refsource_BUGTRAQ
14969
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now