CVE-2007-5261

Publication date

2007-10-06 17:00:00

Family

mitre

State

PUBLISHED

Description

Multiple SQL injection vulnerabilities in MultiCart 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) catid parameter to categorydetail.php and the (2) ddlCategory parameter to search.php.