phpcart CVE Vulnerabilities & CVE List (2)

Products (CPE): — CVEs: 2

phpcart vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to phpcart, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 12 of 2 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2008-7108 Multiple cross-site scripting (XSS) vulnerabilities in Carmosa phpCart 3.4 through 4.6.4 allow remote attackers to inject arbitrary web script or HTML via the (1) quantity or (2) Add Engraving fields to the default URI; (3) Quantity field to phpcart.php; (4) Name, (5) Company, (6) Address, (7) City, and (8) Province/State fields in a checkout action to phpcart.php; and other unspecified vectors. [email protected] 4.3 1.02% 2009-08-28 2026-04-23
CVE-2005-1398 phpcart.php in PHPCart 3.2 allows remote attackers to change product price information by modifying the (1) price or (2) postage parameters. NOTE: it was later reported that 3.4 through 4.6.4 are also affected. [email protected] 5.0 2.74% 2005-05-03 2026-04-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence