Description
|
|
A new vulnerability was identified in Squirrelcart PHP Shopping Cart, which may be exploited by attackers to execute arbitrary SQL commands. The flaw is due to an input validation error in the "index.php" script when handling specialy crafted "crn" and "rn" variables, which may be exploited by attackers to cause arbitrary SQL commands to be executed with the web server privileges.
|