eazy cart
Web & CMS Pluginsoss-project
Top products
Latest CVEs
The 4 most recently published vulnerabilities affecting eazy cart.
- CVE-2006-5246Eazy Cart allows remote attackers to change prices and other critical fields via unspecified vectors to easycart.php, probably including the price parameter. NOTE: some details are obtained from t...5.0
- CVE-2006-5245Eazy Cart allows remote attackers to bypass authentication and gain administrative access via a direct request for admin/home/index.php, and possibly other PHP scripts under admin/.7.5
- CVE-2006-5247Multiple cross-site scripting (XSS) vulnerabilities in Eazy Cart allow remote attackers to inject arbitrary web script or HTML via easycart.php, possibly related to the (1) des and (2) qty paramete...6.8
- CVE-2006-5248Eazy Cart stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a customer database via a direct request for admin/config/custo...7.8