Multiple SQL Injection Vulnerabilities in QuadComm Q-Shop

Multiple SQL Injection Vulnerabilities in QuadComm Q-Shop

CVE-2004-2108 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Multiple SQL injection vulnerabilities in QuadComm Q-Shop allow remote attackers to execute arbitrary SQL commands via certain parameters to (1) search.asp, (2) browse.asp, (3) details.asp, (4) showcat.asp, (5) users.asp, (6) addtomylist.asp, (7) modline.asp, (8) cart.asp, or (9) newuser.asp.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.