Multiple SQL injection vulnerabilities in embadmin/login.asp in E-SMARTCART 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass fields, different vectors than CVE-2007-0092.
https://exchange.xforce.ibmcloud.com/vulnerabilities/39988
http://www.securityfocus.com/bid/27452
http://www.securityfocus.com/archive/1/487055/100/200/threaded
http://14house.blogspot.com/2007/09/e-smart-cart-sql-injection.html