This advisory details multiple vulnerabilities in ViArt SHOP 4.0.5, including SQL injection, XSS, iFrame injection, link injection, and URL redirector abuse. It provides specific parameter names and affected files but lacks functional exploit code.
Classification
Writeup 90%
Attack Type
Sqli | Xss | Other
Complexity
Trivial
Reliability
Theoretical
Target:ViArt SHOP 4.0.5
No auth needed
Prerequisites:Access to vulnerable ViArt SHOP instance