MetaCart E-Shop ProductsByCategory.ASP SQL and XSS Injection Vulnerabilities

Summary
The remote host is running the MetaCart e-Shop, an online store written in ASP. Due to a lack of user input validation, the remote version of this software is vulnerable to various SQL injection vulnerabilities and cross site scripting attacks. An attacker may exploit these flaws to execute arbitrary SQL commands against the remote database or to perform a cross site scripting attack using the remote host.
Solution
None at this time