CVE-2009-1027: SQL Injection
Published Mar 20, 2009
·Updated
SQL injection vulnerability in OpenCart 1.1.8 allows remote attackers to execute arbitrary SQL commands via the order parameter.
Affected Software
1 affected component
OpenCart OpenCart=1.1.8
Event History
Mar 20, 2009
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:30 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-1027?
CVE-2009-1027 is classified as a critical SQL injection vulnerability.
2
How do I fix CVE-2009-1027?
To fix CVE-2009-1027, upgrade OpenCart to a version later than 1.1.8 where the vulnerability is patched.
3
What types of attacks can exploit CVE-2009-1027?
CVE-2009-1027 can be exploited by attackers to execute arbitrary SQL commands on the OpenCart application.
4
Which version of OpenCart is affected by CVE-2009-1027?
CVE-2009-1027 specifically affects OpenCart version 1.1.8.
5
Can CVE-2009-1027 lead to data breaches?
Yes, CVE-2009-1027 can potentially lead to data breaches by allowing unauthorized access to the database.