The default install of the latest version of osCommerce downloadable via their official website is vulnerable to attacks (see ...