Ecw-shop
4 CVEs tracked since 2005. Since Aug 2005, none of them reached CISA KEV.
Ecw-shop CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2005-08 | 4 | 0 |
Products
The products that kept showing up in Ecw-shop's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 4 most recently published vulnerabilities affecting Ecw-shop.
- CVE-2005-2622Cross-site scripting (XSS) vulnerability in index.php in ECW-Shop 6.0.2 allows remote attackers to inject arbitrary web script or HTML via the (1) max or (2) ctg parameter.4.3
- CVE-2005-2623ECW-Shop 6.0.2 allows remote attackers to reduce the total cost of their shopping cart by specifying a negative quantity for an item, which causes the price of the item to be subtracted from the to...5.0
- CVE-2005-2621index.php in ECW-Shop 6.0.2 allows remote attackers to obtain sensitive information via the (1) min or (2) max parameter with a "'" (single quote), which reveals the path in an error message, possi...5.0
- CVE-2003-1231Cross-site scripting (XSS) vulnerability in index.php in ECW-Shop 5.5 allows remote attackers to inject arbitrary web script or HTML via the cat parameter.4.3
The record
- Peak rank
- #20 in Aug 2005
- Busiest month shown
- Aug 2005, 4 CVEs
- Months with a KEV entry
- 0 since Aug 2005
- Monthly snapshots
- 1 since 2005