Unrated severityNVD Advisory· Published Jul 21, 2007· Updated Jun 16, 2026
CVE-2007-3933
CVE-2007-3933
Description
SQL injection vulnerability in insertorder.cfm in QuickEStore 8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the CFTOKEN parameter, a different vector than CVE-2006-2053.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:quickestore:quickestore:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:quickestore:quickestore:*:*:*:*:*:*:*:*range: <=8.2
- (no CPE)range: <=8.2
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.