Unrated severityNVD Advisory· Published Oct 27, 2008· Updated Jun 16, 2026
CVE-2008-4746
CVE-2008-4746
Description
Multiple SQL injection vulnerabilities in Uniwin eCart Professional 2.0.17 allow remote attackers to execute arbitrary SQL commands via unspecified vectors to (1) search.asp and (2) cartUtil.asp.
Affected products
2cpe:2.3:a:uniwin:ecart_professional:2.0.17:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:uniwin:ecart_professional:2.0.17:*:*:*:*:*:*:*
- (no CPE)range: = 2.0.17
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.