Naxtor Shopping Cart lost_password.php script path disclosure

naxtorshoppingcart-path-disclosure (21677) The risk level is classified as LowLow Risk

Description:

Naxtor Shopping Cart could allow a remote attacker to obtain sensitive information caused by improper validation of user-supplied input. A remote attacker can send a specially-crafted URL request to the shop_display_products.php script to cause the full installation path of Naxtor Shopping Cart to be disclosed.


Consequences:

Data Manipulation

Remedy:

No remedy available as of July 9, 2011.

References:

  • BugTraq Mailing List, Tue Aug 02 2005 - 13:53:52 CDT : Naxtor Shopping Cart 1.0 - Information Disclosure & Possible SQL Injection.
  • Naxtor Shopping Cart Web page: Shopping Cart.
  • BID-14456: Naxtor Shopping Cart Shop_Display_Products.PHP SQL Injection Vulnerability
  • CVE-2005-2477: shop_display_products.php in Naxtor Shopping Cart 1.0 allows remote attackers to obtain sensitive information via a cat_id with a (single quote), which reveals the path in an error message, possibly due to an SQL injection vulnerability.
  • SA16262: Naxtor Shopping Cart Cross-Site Scripting and SQL Injection
  • SECTRACK ID: 1014613: Naxtor Shopping Cart `lost_passowrd.php` Permits Cross-Site Scripting Attacks

Platforms Affected:

  • Naxtor Shopping Cart 1.0

Reported:

Aug 02, 2005

The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

For corrections or additions please email xforce@iss.net

Return to the main page