Craig Dansie's vulnerability footprint centers on a single e-commerce product, the Dansie Shopping Cart, which has a modest presence in the web-application space. The observed weakness class reflects broadly categorized or placeholder classification rather than a crisp vulnerability pattern; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Craig Dansie over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2000-0253HIGH The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields. | Apr 11, 2000 | 10.0 | 25 | NO | NO |
CVE-2000-0254MEDIUM The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db | Apr 14, 2000 | 5.0 | 24 | NO | YES |
CVE-2000-0252MEDIUM The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a form variable. | Apr 11, 2000 | 5.0 | 16 | NO | NO |
CVE-2005-2217MEDIUM Dansie Shopping Cart stores the vars.dat file under the web root with insufficient access control, which might allow remote attackers to obtain sensitive information such as progra | Jul 12, 2005 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Craig Dansie.
Media articles that mention a CVE ID that affects a product developed by Craig Dansie — matched by CVE ID, not by vendor name.