← Back

Lagarde

lagarde

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Storefront
storefront

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Lagarde
1Storefront
Apr 23, 2026
Mar 17, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in SearchResults.aspx in LaGarde StoreFront 6 before SP8 allows remote attackers to execute arbitrary SQL commands via the CategoryId parameter. NOTE: the provenance of this information is un...Show more
SQL injection vulnerability in SearchResults.aspx in LaGarde StoreFront 6 before SP8 allows remote attackers to execute arbitrary SQL commands via the CategoryId parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.Show less
1Lagarde
1Storefront
Apr 16, 2026
Aug 18, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in login.asp for StoreFront 6.0, and possibly earlier versions, allows remote attackers to obtain sensitive user information via SQL statements in the password field.