Medium
CVSS 5.0
Overview
cart.pl in Dansie shopping cart allows remote attackers to obtain the installation path via an invalid db parameter, which leaks the path in an error message.
cart.pl in Dansie shopping cart allows remote attackers to obtain the installati...
cart.pl in Dansie shopping cart allows remote attackers to obtain the installation path via an invalid db parameter, which leaks the path in an error message.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: