CVE Database
/

CVE-2005-2206

Back to search

CVE-2005-2206

Published: Jul 11, 2005

Modified: Sep 17, 2024

PUBLISHED

Description

Multiple SQL injection vulnerabilities in CartWIZ allow remote attackers to modify SQL statements via the (1) idProduct parameter to tellAFriend.asp, (2) sortType parameter to viewSupportTickets.asp, or the id parameter to (3) updateCreditCards.asp or (4) deleteCreditCards.asp.

VendorProductVersions

n/a

n/a

affected
n/a

References

1014418
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now