#Aria-Security Team Advisory #<www.Aria-security.Com For English > #<www.Aria-Security.net For Persian > #Original Advisory: #http://www.aria-security.com/forum/showthread.php?t=32 #----------------------------------------------------------- #Software: A-Cart Pro #Vendor: http://alanward.net/acart/ #Method: SQL Injection # #PoC: #http://target/path/category.asp?catcode=[SQL INJECTION] #http://target/path/product.asp?productid=[SQL INJECTION] # #Contact: Advisory@xxxxxxxxxxxxxxxxx