codethat records
3 published records for vendor codethat.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2005-1594Proof of concept | SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary SQL commands via thecodethat · shoppingcart | High7.5 | — | 1.4% | May 16, 2005 |
28Monitor | CVE-2005-1593Proof of concept | Cross-site scripting (XSS) vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to inject arbitrary web scricodethat · shoppingcart | Medium6.8 | — | 4.2% | May 16, 2005 |
21Monitor | CVE-2005-1595No exploit | CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a directcodethat · shoppingcart | Medium5.0 | — | 1.8% | May 16, 2005 |
- CVE-2005-159430Monitor
SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary SQL commands via the
HighCVSS 7.5Proof of conceptEPSS 1%codethat · shoppingcartMay 16, 2005
- CVE-2005-159328Monitor
Cross-site scripting (XSS) vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to inject arbitrary web scri
MediumCVSS 6.8Proof of conceptEPSS 4%codethat · shoppingcartMay 16, 2005
- CVE-2005-159521Monitor
CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a direct
MediumCVSS 5.0No exploitEPSS 2%codethat · shoppingcartMay 16, 2005