CVE-2009-4940

Publication date

2010-07-22 10:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in index.php in Zeus Cart 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the maincatid parameter in a showmaincatlanding action.