Description
Cross-site scripting (XSS) vulnerability in viewCart.asp in CartWIZ 1.20 allows remote attackers to inject arbitrary web script or HTML via the message parameter.
Exploits (1)
References (2)
Core 2
Core References
Vendor Advisory x_refsource_misc
http://www.hackerscenter.com/archive/view.asp?id=4008
Exploit vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/14386
Scores
EPSS
0.0087
EPSS Percentile
75.3%
Details
Status
published
Products (2)
elemental_software/cartwiz
1.10
elemental_software/cartwiz
1.20
Published
Jul 27, 2005
Tracked Since
Feb 18, 2026