VYPR
Vendor

Codethat

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2024-53412HigApr 15, 2026
    risk 0.55cvss 8.4epss 0.00

    Command injection in the connect function in NietThijmen ShoppingCart 0.0.2 allows an attacker to execute arbitrary shell commands and achieve remote code execution via injection of malicious payloads into the Port field

  • CVE-2005-1593May 16, 2005
    risk 0.03cvss epss 0.06

    Cross-site scripting (XSS) vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.

  • CVE-2005-1594May 16, 2005
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

  • CVE-2005-1595May 16, 2005
    risk 0.00cvss epss 0.00

    CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a direct request.