CVE-2008-3484
eStoreAff 0.1 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in eStoreAff 0.1 allows remote attackers to execute arbitrary SQL commands via the cid parameter in a showcat action to index.php.
Exploits (1)
Scores
EPSS
0.0041
EPSS Percentile
61.2%
Classification
CWE
CWE-89
Status
draft
Affected Products (1)
estoreaff/estoreaff
Timeline
Published
Aug 05, 2008
Tracked Since
Feb 18, 2026