CVE-2010-2042
Shopex Ecshop - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in search.php in ECShop 2.7.2 allows remote attackers to execute arbitrary SQL commands via the encode parameter. NOTE: some of these details are obtained from third party information.
Exploits (1)
Scores
EPSS
0.0041
EPSS Percentile
61.3%
Details
CWE
CWE-89
Status
published
Products (1)
shopex/ecshop
2.7.2
Published
May 25, 2010
Tracked Since
Feb 18, 2026