Key Information Vulnerability Name: osCommerce Online Merchant 2.2 RC2a - Code Execution EDB-ID: 9556 CVE: None Author: FLYH4T Type: WEBAPPS Platform: PHP Date: 2009-08-31 Verification Status: EDB Verified Exploit Method: Exploit: π¨ / {} Vulnerability Description This vulnerability allows attackers to execute arbitrary code on osCommerce Online Merchant 2.2 RC2a. Attackers can upload and execute malicious PHP code by sending specific HTTP requests. Exploit Code Example Additional Information Tags: None Announcement/Source: Link