vendor:
EZ-Shop
by:
Giovanni Buzzin, "Osirys"
N/A
CVSS
N/A
SQL Injection
89
CWE
Product Name: EZ-Shop
Affected Version From: 01.02
Affected Version To: 01.02
Patch Exists: NO
Related CWE:
CPE: a:ez-shop:ez-shop:1.02
Platforms Tested:
2011
EZ-Shop SQL Injection
EZ-Shop is prone to SQL Injection due to insufficient user supplied input sanitization.
Mitigation:
Implement proper input validation and sanitization to prevent SQL Injection attacks.