Comersus Cart Multiple Vulnerabilities

BID:12362

Info

Comersus Cart Multiple Vulnerabilities

Bugtraq ID: 12362
Class: Input Validation Error
CVE:
Remote: Yes
Local: No
Published: Jan 25 2005 12:00AM
Updated: Jan 25 2005 12:00AM
Credit: Discovery of this vulnerability is credited to raf somers <[email protected]>.
Vulnerable: Comersus Open Technologies Comersus Cart 6.0.1
Comersus Open Technologies Comersus Cart 6.0
Comersus Open Technologies Comersus Cart 5.0 991
Comersus Open Technologies Comersus Cart 5.0 98
Comersus Open Technologies Comersus Cart 5.0 9
Not Vulnerable: Comersus Open Technologies Comersus Cart 6.0.2

Discussion

Comersus Cart Multiple Vulnerabilities

Comersus Cart is reportedly affected by multiple vulnerabilities. There is a possiblity of gaining administrator access due to a failure of the application to remove an installation script after install. There is the possiblity of SQL injection by passing a malicious HTTP referer header. There are also some possible cross-site scripting issues.

The vendor has addressed these issues in Comersus Cart version 6.0.2; earlier version are reportedly vulnerable.

Exploit / POC

Comersus Cart Multiple Vulnerabilities

No exploit is required for any of the issues.

The following proof of concepts are available for the cross-site scripting issue:
http://www.example.com/comersus/backofficelite/comersus_supportError.asp?error=<script>alert('hi%20mum');</script>
http://www.example.com/comersus/backofficelite/comersus_backofficelite_supportError.asp?error=<script>alert('hi%20mum');</script>

The following proof of concept is available for the SQL injection issue:
GET /comersus/store/default.asp HTTP/1.1
Referer: <SQLCODE HERE>

Solution / Fix

Comersus Cart Multiple Vulnerabilities

Solution:
The vendor has addressed these issues in Comersus Cart 6.0.2.


Comersus Open Technologies Comersus Cart 5.0 991

Comersus Open Technologies Comersus Cart 5.0 9

Comersus Open Technologies Comersus Cart 5.0 98

Comersus Open Technologies Comersus Cart 6.0

Comersus Open Technologies Comersus Cart 6.0.1

References

Comersus Cart Multiple Vulnerabilities

References:
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report