Spidersales is a narrowly scoped sales and customer-relationship management platform with a minimal vulnerability footprint. Weakness classifications for this vendor have been recorded as placeholder entries with limited structural specificity; current severity, exploitation, and exposure data are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Spidersales over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0348HIGH SQL injection vulnerability in viewCart.asp in SpiderSales shopping cart software allows remote attackers to execute arbitrary SQL via the userId parameter. | Nov 23, 2004 | 10.0 | 35 | NO | YES |
SpiderSales shopping cart does not enforce a minimum length for the private key, which can make it easier for local users to obtain the private key by factoring. | Nov 23, 2004 | 2.1 | 11 | NO | NO |
Spider Sales shopping cart stores the private key in the same database and table as the public key, which allows local users with access to the database to decrypt data. | Nov 23, 2004 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Spidersales.
Media articles that mention a CVE ID that affects a product developed by Spidersales — matched by CVE ID, not by vendor name.