CVE Tools

Viart

10 CVEs tracked since 2007. Since Oct 2007, none of them reached CISA KEV.

Viart CVEs per month

Oct 2007 to Jan 2010. Point at a month, or focus the strip and use the arrow keys.
Viart CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2007-1020
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-07null or fewer
2008-08null or fewer
2008-09null or fewer
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-01null or fewer
2009-02null or fewer
2009-03null or fewer
2009-0460
2009-05null or fewer
2009-06null or fewer
2009-07null or fewer
2009-08null or fewer
2009-09null or fewer
2009-10null or fewer
2009-11null or fewer
2009-12null or fewer
2010-0120

Products

The products that kept showing up in Viart's monthly top three, with their CVEs summed over those months.

  1. Viart Shop61 month
  2. Shop11 month
  3. Shopping Cart11 month
  4. Viart CMS11 month
  5. Viart Helpdesk11 month

Latest CVEs

The 13 most recently published vulnerabilities affecting Viart.

  1. CVE-2009-4547Multiple cross-site scripting (XSS) vulnerabilities in ViArt CMS 3.x allow remote attackers to inject arbitrary web script or HTML via the (1) category_id parameter to forums.php, or the forum_id p...4.3
  2. CVE-2009-4548Multiple cross-site scripting (XSS) vulnerabilities in ViArt Helpdesk 3.x allow remote attackers to inject arbitrary web script or HTML via the category_id parameter to (1) products.php, (2) articl...4.3
  3. CVE-2008-6757Cross-site scripting (XSS) vulnerability in manuals_search.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to inject arbitrary web script or HTML via the manuals_search parameter.4.3
  4. CVE-2008-6766cart_save.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to cause a denial of service (excessive shopping carts) via a flood of requests.5.0
  5. CVE-2008-6758Cross-site request forgery (CSRF) vulnerability in cart_save.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to hijack the authentication of arbitrary users for requests that cond...6.8
  6. CVE-2008-6760ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart_save.php, which reveals the SQL tab...4.3
  7. CVE-2008-6759ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via a URL in the POST_DATA parameter to manuals_search.php, which reveals the installation path in an erro...4.3
  8. CVE-2008-6765ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to access the contents of an arbitrary shopping cart via a modified cart_name parameter.5.0
  9. CVE-2008-3369SQL injection vulnerability in products_rss.php in ViArt Shop 3.5 and earlier allows remote attackers to execute arbitrary SQL commands via the category_id parameter.7.5
  10. CVE-2007-6347PHP remote file inclusion vulnerability in blocks/block_site_map.php in ViArt (1) CMS 3.3.2, (2) HelpDesk 3.3.2, (3) Shop Evaluation 3.3.2, and (4) Shop Free 3.3.2 allows remote attackers to execut...6.8
  11. CVE-2007-5463ideal_process.php in the iDEAL payment module in ViArt Shop 3.3 beta and earlier might allow remote attackers to obtain the pathname for certificate and key files via an "iDEAL transaction", possib...5.0
  12. CVE-2007-5364Directory traversal vulnerability in payments/ideal_process.php in the iDEAL transaction handler in ViArt Shopping Cart allows remote attackers to have an unknown impact via directory traversal seq...10.0
  13. CVE-2006-2979Multiple cross-site scripting (XSS) vulnerabilities in ViArt Shop Free 2.5.5, and possibly other distributions including Light, Standard, and Enterprise, allow remote attackers to inject arbitrary ...2.6

The record

Peak rank
#28 in Apr 2009
Busiest month shown
Apr 2009, 6 CVEs
Months with a KEV entry
0 since Oct 2007
Monthly snapshots
3 since 2007
Viart's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store