[] NeoSense

LaGarde StoreFront 5.0 Shopping Cart - 'login.asp' SQL Injection

Author: G00db0y
type: webapps
platform: asp
port: 
date_added: 2003-12-07 
date_updated: 2013-05-30 
verified: 1 
codes: CVE-2003-0557;OSVDB-8442 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/13998/info

StoreFront Shopping Cart is affected by an SQL injection vulnerability. The vulnerability affects the 'login.asp' script.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

StoreFront Shopping Cart 5.0 is affected by this vulnerability.

The following proof of concept example is available:
Email id: example@example.com
Password: ' or '='