CVE-2007-2890
cpCommerce <1.1.0 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in category.php in cpCommerce 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id_category parameter.
Exploits (1)
References (6)
Scores
EPSS
0.0129
EPSS Percentile
79.8%
Details
Status
published
Products (1)
cpcommerce/cpcommerce
< 1.1.0
Published
May 30, 2007
Tracked Since
Feb 18, 2026