VYPR
Vendor

Caupo.net

Products
3
CVEs
3
Across products
3
Status
Private

Products

3

Recent CVEs

3
  • CVE-2008-2866Jun 25, 2008
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in csc_article_details.php in Caupo.net CaupoShop Classic 1.3 allows remote attackers to execute arbitrary SQL commands via the saArticle[ID] parameter.

  • CVE-2007-5784Nov 1, 2007
    risk 0.03cvss epss 0.04

    PHP remote file inclusion vulnerability in index.php in CaupoShop Pro 2.x allows remote attackers to execute arbitrary PHP code via a URL in the action parameter.

  • CVE-2002-0439Jul 26, 2002
    risk 0.00cvss epss 0.01

    Cross-site scripting vulnerability in CaupoShop 1.30a and earlier, and possibly CaupoShopPro, allows remote attackers to execute arbitrary Javascript and steal credit card numbers or delete items by injecting the script into new customer information fields such as the message field.