Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-1465

The Cubecart::_basket method in classes/cubecart.class.php in CubeCart 5.0.0 through 5.2.0 allows remote attackers to unserialize arbitrary PHP objects via a crafted shipping parameter, as demonstrated by modifying the application configuration using the Config object.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.31
EPSS Ranking 96.5%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
References
Products affected by CVE-2013-1465


Contact Us

Shodan ® - All rights reserved