Vulnerabilities
Vulnerable Software
Cubecart:  >> Cubecart  >> 4.3.7  Security Vulnerabilities
Session fixation vulnerability in CubeCart before 5.2.9 allows remote attackers to hijack web sessions via the PHPSESSID parameter.
CVSS Score
6.8
EPSS Score
0.073
Published
2014-04-22
SQL injection vulnerability in includes/content/cart.inc.php in CubeCart PHP Shopping cart 4.3.4 through 4.3.9 allows remote attackers to execute arbitrary SQL commands via the shipKey parameter to index.php.
CVSS Score
7.5
EPSS Score
0.014
Published
2010-06-10


Contact Us

Shodan ® - All rights reserved