Published:2006/04/13  Last Updated:2008/05/21

JVN#68630618
QUICK CART cross-site scripting vulnerability

Overview

QUICK CART is a shopping cart system for building Internet shop sites.
QUICK CART contains a cross-site scripting vulnerability as it does not validate inputs properly.

Products Affected

  • QUICK CART Ver 1
  • QUICK CART Ver 2
  • QUICK CART Free
  • QUICK CART Pro
  • QUICK CART Plugin for Movable Type 3.2

Description

Impact

An arbitrary script could be executed on the user's web browser.

Solution

Vendor Status

Vendor Status Last Update Vendor Notes
QUICK-SOLUTION.COM Vulnerable 2006/04/13
Vendor Link
QUICK-SOLUTION.COM QUICK-SOLUTION.COM

References

JPCERT/CC Addendum

Credit

Other Information

JPCERT Alert
JPCERT Reports
CERT Advisory
CPNI Advisory
TRnotes
CVE
JVN iPedia JVNDB-2006-000611

Update History