shop.pl in Hassan Consulting Shopping Cart 1.23 allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Shopping_cart |
Hassan_consulting |
1.23 (including) |
1.23 (including) |
References