Vulnerabilities
Vulnerable Software
Caupo.net:  Security Vulnerabilities
SQL injection vulnerability in csc_article_details.php in Caupo.net CaupoShop Classic 1.3 allows remote attackers to execute arbitrary SQL commands via the saArticle[ID] parameter.
CVSS Score
7.5
EPSS Score
0.001
Published
2008-06-25
PHP remote file inclusion vulnerability in index.php in CaupoShop Pro 2.x allows remote attackers to execute arbitrary PHP code via a URL in the action parameter.
CVSS Score
6.8
EPSS Score
0.015
Published
2007-11-01
Cross-site scripting vulnerability in CaupoShop 1.30a and earlier, and possibly CaupoShopPro, allows remote attackers to execute arbitrary Javascript and steal credit card numbers or delete items by injecting the script into new customer information fields such as the message field.
CVSS Score
7.5
EPSS Score
0.007
Published
2002-07-26


Contact Us

Shodan ® - All rights reserved