Published:2006/04/13 Last Updated:2008/05/21
JVN#68630618
QUICK CART cross-site scripting vulnerability
Overview
QUICK CART is a shopping cart system for building Internet shop sites.
QUICK CART contains a cross-site scripting vulnerability as it does not validate inputs properly.
Products Affected
- QUICK CART Ver 1
- QUICK CART Ver 2
- QUICK CART Free
- QUICK CART Pro
- QUICK CART Plugin for Movable Type 3.2
Description
Impact
An arbitrary script could be executed on the user's web browser.
Solution
Vendor Status
Vendor | Status | Last Update | Vendor Notes |
---|---|---|---|
QUICK-SOLUTION.COM | Vulnerable | 2006/04/13 |
Vendor | Link |
QUICK-SOLUTION.COM |
QUICK-SOLUTION.COM |
References
JPCERT/CC Addendum
Credit
Other Information
JPCERT Alert | |
JPCERT Reports | |
CERT Advisory | |
CPNI Advisory | |
TRnotes | |
CVE | |
JVN iPedia |
JVNDB-2006-000611 |