Unrated severityNVD Advisory· Published Aug 6, 2004· Updated Apr 16, 2026
CVE-2004-0675
CVE-2004-0675
Description
Cross-site scripting (XSS) vulnerability in (1) cart32.exe or (2) c32web.exe in Cart32 shopping cart allows remote attackers to execute arbitrary web script via the cart32 parameter to a GetLatestBuilds command.
Affected products
10cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:2.5a:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:2.5a:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:2.6:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.5:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.5a:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.5a_build710:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.5_build619:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:4.4:*:*:*:*:*:*:*
- cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:5.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.