Page 1 of 1

Possible SQL injegtion on opencart 2.1.0.1

Posted: Fri Jan 15, 2016 7:31 pm
by alfaone78
Hi,
someone know if is possible an sql injection on OC 2.1.0.1?

Today i've been see that some image path of product are corrupted...

Anyone have news about???

Thanks!

Salvo

Re: Possible SQL injegtion on opencart 2.1.0.1

Posted: Fri Jan 15, 2016 7:50 pm
by daik01
I tested OC several times on SQl injection, and could never find a leak.

Do you have any extensions installed? I think that will be a possibility, not all extension developers are security minded ;)

Re: Possible SQL injegtion on opencart 2.1.0.1

Posted: Fri Jan 15, 2016 7:59 pm
by alfaone78
Hi,
i've istalled an extension for paypal pro hosted(pay with credit card via paypal) and i've modified some code on SEO Page for adding SEO rewrite for some page...

C U