The view_page.html sample page in the MiniVend shopping cart program allows remote attackers to execute arbitrary commands via shell metacharacters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Minivend | Akopia | 3.0 (including) | 3.0 (including) |
Minivend | Akopia | 4.0 (including) | 4.0 (including) |
Minivend | Akopia | 4.0.4 (including) | 4.0.4 (including) |