CVE Database
/

CVE-2008-6760

Back to search

CVE-2008-6760

Published: Apr 28, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart_save.php, which reveals the SQL table names in an error message, related to code that mishandles the lack of a user_id parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

53282
vdb-entry
x_refsource_OSVDB
1021497
vdb-entry
x_refsource_SECTRACK
33043
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now