📦

shopping_cart

Vendor: dansie

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 1.54% Exploit Prob.
Latest CVE CVE-2003-1517 Dec 31

Security Vulnerability Index

Page 1 / 1
5.0 CVSS
CVE-2003-1517
Exploit Found

cart.pl in Dansie shopping cart allows remote attackers to obtain the installation path via an invalid db parameter, which leaks the path in an error message.

EPSS: 2.00%
5.0 CVSS

Privacy leak in Dansie Shopping Cart 3.04, and probably earlier versions, sends sensitive information such as user credentials to an e-mail address controlled by the product developers.

EPSS: 1.08%