QUOTE

Severity: High
Title: Multiple SQL Injections in MetaCart e-Shop V-8
Date: 27/04/2005
Vendor: MetaCart
Vendor Website: www.metalinks.com

Proof of Concept Exploits:

http://example.com/eshopv-8/product.asp?in...3bCurCatalogID=
SQL INJECTION

http://example.com/eshopv-8/productsByCate...9;SQL_INJECTION
SQL INJECTION

Author:
These vulnerabilties have been found and released by Diabolic Crab



Source: http://seclists.org/lists/bugtraq/2005/Apr/0426.html