PT-2026-33062 · Unknown · Nietthijmen Shoppingcart
Published
2026-04-15
·
Updated
2026-04-16
·
CVE-2024-53412
CVSS v3.1
8.4
High
| Vector | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
NietThijmen ShoppingCart version 0.0.2
Description
Command injection in the
connect() function allows an attacker to execute arbitrary shell commands and achieve remote code execution by injecting malicious payloads into the Port field.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
RCE
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nietthijmen Shoppingcart