VYPR

Cyberoffice Shopping Cart

by Smartwin Technology

CVEs (2)

  • CVE-2000-0926Dec 19, 2000
    risk 0.04cvss epss 0.07

    SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the "Price" hidden form variable.

  • CVE-2000-0925Dec 19, 2000
    risk 0.03cvss epss 0.06

    The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.