Lucene search

K

Zen Security Vulnerabilities

cve
cve

CVE-2006-0697

Zen Cart before 1.2.7 does not protect the admin/includes directory, which allows remote attackers to cause unknown impact via unspecified vectors, probably direct...

6.8AI Score

0.009EPSS

2006-02-15 11:06 AM
21
cve
cve

CVE-2005-3996

SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to execute arbitrary SQL commands via the admin_email...

8.4AI Score

0.013EPSS

2005-12-05 12:03 AM
30
cve
cve

CVE-2005-3997

Zen Cart 1.2.6d and earlier, under certain PHP configurations, allows remote attackers to obtain sensitive information via direct requests to files in the admin/includes directory, including (1) graphs/banner_daily.php, (2) graphs/banner_infobox.php, (3) graphs/banner_yearly.php, (4)...

6.7AI Score

0.013EPSS

2005-12-05 12:03 AM
30
cve
cve

CVE-2004-2025

SQL injection vulnerability in application_top.php for Zen Cart 1.1.3 before patch 2 may allow remote attackers to execute arbitrary SQL commands via the products_id...

8.8AI Score

0.002EPSS

2005-05-10 04:00 AM
27
cve
cve

CVE-2004-2023

SQL injection vulnerability in login.php in Zen Cart 1.1.2d, 1.1.4 before patch 1, and possibly other versions allows remote attackers to execute arbitrary SQL via the (1) admin_name or (2) admin_pass...

8.7AI Score

0.006EPSS

2005-05-10 04:00 AM
32
Total number of security vulnerabilities55