Description
|
|
Multiple vulnerabilities have been identified in Pre Shopping Mall, which could be exploited by attackers to execute arbitrary SQL commands or scripting code. These flaws are due to input validation errors in the "search.php", "detail.php", and "products.php" scripts that do not validate the "search", "prodid", and "cid" parameters, which could be exploited by malicious people to conduct SQL injection and cross site scripting attacks.
|