Skip to content
Noroxi

oneworldstore records

4 published records for vendor oneworldstore.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      4 records
      • CVE-2005-1161
        31Monitor

        Multiple SQL injection vulnerabilities in OneWorldStore allow remote attackers to execute arbitrary SQL commands via the idProduct parameter

        HighCVSS 7.5Proof of conceptEPSS 4%

        oneworldstore · oneworldstoreMay 2, 2005

      • CVE-2005-1162
        25Monitor

        Multiple cross-site scripting (XSS) vulnerabilities in OneWorldStore allow remote attackers to inject arbitrary web script or HTML via the (

        MediumCVSS 5.8Proof of conceptEPSS 6%

        oneworldstore · oneworldstoreMay 2, 2005

      • CVE-2005-1329
        21Monitor

        owOfflineCC.asp in OneWorldStore allows remote attackers to obtain sensitive information by modifying the idOrder parameter.

        MediumCVSS 5.0Proof of conceptEPSS 3%

        oneworldstore · oneworldstoreMay 2, 2005

      • CVE-2005-1328
        21Monitor

        OneWorldStore allows remote attackers to cause a denial of service (application crash) via a direct request to owConnections/chksettings.asp

        MediumCVSS 5.0No exploitEPSS 2%

        oneworldstore · oneworldstoreMay 2, 2005