[VIM] GreenCart PHP Shopping Cart (id) Remote SQL Injection Vulnerability

George A. Theall theall at tenablesecurity.com
Sun Aug 3 01:59:53 UTC 2008


The forum thread at www.viart.com/pozscripts_com.html suggests that  
GreenCart is a ripoff of ViArt Shop.  I don't know if that's true --  
they certainly do look the same (eg, /admin/admin_login.php, /page.php? 
page=help, /basket.php) -- but it makes me wonder if the SQL  
injections covered by Milw0rm 6189 also apply to ViArt Shop. Can  
anyone with access to a copy of ViArt confirm?


George
-- 
theall at tenablesecurity.com





More information about the VIM mailing list