8.1 High
AI Score
Confidence
Low
0.008 Low
EPSS
Percentile
82.0%
SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 RC 6 allows remote attackers to execute arbitrary SQL commands via the s[cid] parameter in a search_list action, a different vector than CVE-2007-2549.
osvdb.org/38440
www.securityfocus.com/bid/25445
www.exploit-db.com/exploits/4313