Known Vulnerabilities for products from Comersus Open Technologies
Listed below are 14 of the newest known vulnerabilities associated with the vendor "Comersus Open Technologies".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2007-3324 json | Multiple cross-site scripting (XSS) vulnerabilities in Comersus Cart 7.07 allow remote attackers to inject arbitrary web scri... | Not Provided | 2007-06-21 | 2026-04-23 |
| CVE-2007-3323 json | SQL injection vulnerability in comersus_optReviewReadExec.asp in Comersus Shop Cart 7.07 allows remote attackers to execute a... | Not Provided | 2007-06-21 | 2026-04-23 |
| CVE-2005-3397 json | Cross-site scripting (XSS) vulnerability in Comersus BackOffice allows remote attackers to inject arbitrary web script or HTM... | Not Provided | 2005-11-01 | 2025-04-03 |
| CVE-2005-3285 json | Cross-site scripting (XSS) vulnerability in comersus_backoffice_searchItemForm.asp in Comersus BackOffice Plus allows remote ... | Not Provided | 2005-10-23 | 2025-04-03 |
| CVE-2005-2191 json | Multiple cross-site scripting (XSS) vulnerabilities in Comersus shopping cart allow remote attackers to inject arbitrary web ... | Not Provided | 2005-07-11 | 2025-04-03 |
| CVE-2005-2190 json | Multiple SQL injection vulnerabilities in Comersus shopping cart allow remote attackers to execute arbitrary SQL commands via... | Not Provided | 2005-07-11 | 2025-04-03 |
| CVE-2005-1188 json | Cross-site scripting (XSS) vulnerability in comersus_searchItem.asp in Comersus 3.90 to 4.51 allows remote attackers to injec... | Not Provided | 2005-05-02 | 2025-04-03 |
| CVE-2005-1010 json | Cross-site scripting (XSS) vulnerability in Comersus Cart 6 allows remote attackers to inject arbitrary web script or HTML vi... | Not Provided | 2005-05-02 | 2025-04-03 |
| CVE-2005-0303 json | Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_supportError.asp or (2) comersus_backofficelite_supportEr... | Not Provided | 2005-05-02 | 2025-04-03 |
| CVE-2005-0302 json | SQL injection vulnerability in default.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to execute arbitrary SQL c... | Not Provided | 2005-05-02 | 2025-04-03 |
| CVE-2005-0301 json | comersus_backoffice_install10.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to bypass authentication and gain p... | Not Provided | 2005-05-02 | 2025-04-03 |
| CVE-2004-1656 json | CRLF injection vulnerability in Comersus Shopping Cart 5.0991 allows remote attackers to perform HTTP Response Splitting atta... | Not Provided | 2004-09-01 | 2025-04-03 |
| CVE-2004-0682 json | comersus_gatewayPayPal.asp in Comersus Cart 5.09, and possibly other versions before 5.098, allows remote attackers to change... | Not Provided | 2004-08-06 | 2025-04-03 |
| CVE-2004-0681 json | Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_customerAuthenticateForm.asp, (2) comersus_backoffice_mes... | Not Provided | 2004-08-06 | 2025-04-03 |