CVE-2008-6279

RakhiSoftware Price Comparison Script (aka Shopping Cart) allows remote attackers to obtain sensitive information via an invalid PHPSESSID cookie, which reveals the installation path in an error message.
Configurations

Configuration 1 (hide)

cpe:2.3:a:rakhisoftware:rakhisoftware_shopping_cart:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2009-02-25 23:30

Updated : 2023-12-10 10:51


NVD link : CVE-2008-6279

Mitre link : CVE-2008-6279

CVE.ORG link : CVE-2008-6279


JSON object : View

Products Affected

rakhisoftware

  • rakhisoftware_shopping_cart
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor