Command injection in the connect function in NietThijmen ShoppingCart 0.0.2 allows an attacker to execute arbitrary shell commands and achieve remote code execution via injection of malicious payloads into the Port field
References
Configurations
No configuration.
History
15 Apr 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-77 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.4 |
| References | () https://github.com/Buckdray/vulnerability-research/blob/main/CVE-2024-53412/README.md - |
15 Apr 2026, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-15 15:16
Updated : 2026-04-27 19:18
NVD link : CVE-2024-53412
Mitre link : CVE-2024-53412
CVE.ORG link : CVE-2024-53412
JSON object : View
Products Affected
No product.
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
