CVE-2008-0546 | Shoppingtree Candypress Store up to 4.1 recid sql injection (EDB-4988 / Nessus ID 30107)
A vulnerability, which was classified as critical, was found in Shoppingtree Candypress Store up to 4.1. Affected is an unknown function. The manipulation of the argument recid leads to sql injection.
This vulnerability is traded as CVE-2008-0546. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.