Filtered by vendor Oscommerce Subscriptions
Filtered by product Php Point Of Sale Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2007-1477 1 Oscommerce 1 Php Point Of Sale 2024-11-21 N/A
Directory traversal vulnerability in index.php in PHP Point Of Sale for osCommerce 1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cfg_language parameter. NOTE: this issue has been disputed by CVE, since the cfg_language variable is configured upon proper product installation