Known Vulnerabilities for products from Shop-script
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Shop-script".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2009-2023 json | SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attackers ... | Not Provided | 2009-06-09 | 2026-04-23 |
| CVE-2008-0158 json | Directory traversal vulnerability in index.php in Shop-Script 2.0 and possibly other versions allows remote attackers to read... | Not Provided | 2008-01-09 | 2026-04-23 |
| CVE-2007-4933 json | Direct static code injection vulnerability in includes/admin/sub/conf_appearence.php in Shop-Script FREE 2.0 and earlier allo... | Not Provided | 2007-09-18 | 2026-04-23 |
| CVE-2007-4932 json | admin.php in Shop-Script FREE 2.0 and earlier sends a redirect to the web browser but does not exit when administrative crede... | Not Provided | 2007-09-18 | 2026-04-23 |
| CVE-2007-2331 json | PHP remote file inclusion vulnerability in cart.php in Shop-Script 2.0 allows remote attackers to execute arbitrary PHP code ... | Not Provided | 2007-04-27 | 2026-04-23 |