Virtuemart

Virtuemart

16 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.22%
  • Veröffentlicht 18.06.2007 10:30:00
  • Zuletzt bearbeitet 16.06.2026 22:41:20

SQL injection vulnerability in VirtueMart before 1.0.11 allows remote attackers to execute arbitrary SQL commands via unspecified parameters, possibly related to improper input validation of the PATH_INFO (PHP_SELF) by virtuemart_parser.php.

  • EPSS 1.07%
  • Veröffentlicht 08.03.2007 22:19:00
  • Zuletzt bearbeitet 16.06.2026 22:37:25

Cross-site scripting (XSS) vulnerability in virtuemart_parser.php in VirtueMart before 20070213 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this issue is probably different than CVE-2007-0376.

  • EPSS 1.13%
  • Veröffentlicht 26.02.2007 17:28:00
  • Zuletzt bearbeitet 16.06.2026 22:36:56

Cross-site scripting (XSS) vulnerability in ps_cart.php in VirtueMart before 20070116 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this issue might overlap CVE-2007-0376.

  • EPSS 1.26%
  • Veröffentlicht 19.01.2007 23:28:00
  • Zuletzt bearbeitet 16.06.2026 22:34:05

SQL injection vulnerability in Virtuemart 1.0.7 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, probably related to (1) Itemid, (2) product_id, and category_id parameters as handled in virtuemart_parser.php.

  • EPSS 1.36%
  • Veröffentlicht 19.01.2007 23:28:00
  • Zuletzt bearbeitet 16.06.2026 22:35:27

Cross-site scripting (XSS) vulnerability in Virtuemart 1.0.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

  • EPSS 1.29%
  • Veröffentlicht 31.12.2005 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:19:31

VirtueMart before 1.0.1 does not properly handle errors when a user is forbidden to read a requested page, which has unknown impact and remote attack vectors.