CVE-2007-3323
Comersus Shop Cart 7.07 - SQL Injection via idProduct Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-3323. PoCs published by Doz.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in Comersus Cart 7.0.7, where an attacker can exploit the 'idProduct' parameter in 'comersus_optReviewReadExec.asp' to manipulate database queries. No actual exploit code is present, only a description and a sample vulnerable URL.
Description
SQL injection vulnerability in comersus_optReviewReadExec.asp in Comersus Shop Cart 7.07 allows remote attackers to execute arbitrary SQL commands via the idProduct parameter. NOTE: this might be the same as CVE-2005-2190.2.
Exploits (1)
The provided text describes a SQL injection vulnerability in Comersus Cart 7.0.7, where an attacker can exploit the 'idProduct' parameter in 'comersus_optReviewReadExec.asp' to manipulate database queries. No actual exploit code is present, only a description and a sample vulnerable URL.