Description
|
|
Two vulnerabilities were identified in Shop-Script, which may be exploited by remote attackers to execute arbitrary SQL commands. These flaws are due to an input validation error in the "index.php" script that does not properly validate user-supplied input in the "categoryID" and "ProductID" parameters, which may be exploited by a remote attacker to cause arbitrary SQL commands to be executed.
|