Skip to content
Noroxi

shop-script records

5 published records for vendor shop-script.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • CVE-2007-4932
    31Monitor

    admin.php in Shop-Script FREE 2.0 and earlier sends a redirect to the web browser but does not exit when administrative credentials are miss

    HighCVSS 7.5Proof of conceptEPSS 3%

    shop-script · shop-scriptSep 18, 2007

  • CVE-2007-4933
    31Monitor

    Direct static code injection vulnerability in includes/admin/sub/conf_appearence.php in Shop-Script FREE 2.0 and earlier allows remote attac

    HighCVSS 7.5Proof of conceptEPSS 2%

    shop-script · shop-scriptSep 18, 2007

  • CVE-2007-2331
    30Monitor

    PHP remote file inclusion vulnerability in cart.php in Shop-Script 2.0 allows remote attackers to execute arbitrary PHP code via a URL in th

    HighCVSS 7.5No exploitEPSS 1%

    shop-script · shop-scriptApr 26, 2007

  • CVE-2009-2023
    27Monitor

    SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbi

    MediumCVSS 6.8Proof of conceptEPSS 1%

    shop-script · shop-scriptJun 9, 2009

  • CVE-2008-0158
    21Monitor

    Directory traversal vulnerability in index.php in Shop-Script 2.0 and possibly other versions allows remote attackers to read arbitrary file

    MediumCVSS 5.0Proof of conceptEPSS 2%

    shop-script · shop-scriptJan 8, 2008