VYPR

Evolve Merchant

by Lynx Internet Solutions

CVEs (2)

  • CVE-2006-6207Dec 1, 2006
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in products.asp in Evolve shopping cart (aka Evolve Merchant) allows remote attackers to execute arbitrary SQL commands via the partno parameter. NOTE: the vendor disputes this issue, stating that it is a forced SQL error

  • CVE-2006-5953Nov 17, 2006
    risk 0.00cvss epss 0.01

    SQL injection vulnerability in viewcart.asp in Evolve shopping cart (aka Evolve Merchant) allows remote attackers to execute arbitrary SQL commands via the zoneid parameter.