Ecommerce Corp. Online Store Kit More.php Injection Vulnerability
Summary:
More.php MoSQL Injection
Description:
The remote host is running Ecommerce Corportation Online Store Kit, a web based e-commerce CGI suite.
A vulnerability has been discovered in the more.php file that allows unauthorized users to inject SQL commands or to perform cross-site scripting attackes.
An attacker may use this flaw to gain the control of the remote database
Solution : Upgrade to the latest version of this software. Risk factor : High