Back

CVE-2002-0553

Cross-site scripting vulnerability in SunShop 2.5 and earlier allows remote attackers to gain administrative privileges to SunShop by injecting the script into fields during new customer registration.

Published: Jul 3, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (6)

Vendor Product Version
turnkey_solutions sunshop_shopping_cart 1.5
turnkey_solutions sunshop_shopping_cart 2.0
turnkey_solutions sunshop_shopping_cart 2.1
turnkey_solutions sunshop_shopping_cart 2.2
turnkey_solutions sunshop_shopping_cart 2.4
turnkey_solutions sunshop_shopping_cart 2.5

GitHub Security Advisory GHSA-w2j3-p2xq-7cmx

Cross-site scripting vulnerability in SunShop 2.5 and earlier allows remote attackers to gain...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.88%

Top 14% most likely to be exploited

Threat Score 30.9 / 100

Data Sources

NVD EPSS GitHub