Security Advisory
CVE-2005-4572
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Multiple SQL injection vulnerabilities in myEZshop Shopping Cart allow remote attackers to execute arbitrary SQL commands via the (1) GroupsId and (2) ItemsId parameters in admin.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.