|
|
Info |
Last Modified |
| 2 months ago |
|
|
|
|
|
This Entry needs help! It is only 25% Complete. Click the edit link above to add more information.
Contributing is fast and easy, and benefits the entire security community.
|
Keywords |
RedLevel Advisory #021
|
|
Description |
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in CubeCart 3.0.16 might allow remote attackers to execute arbitrary SQL commands via an unspecified parameter to cart.inc.php and certain other files in an include directory, related to missing sanitization of the $option variable and possibly cookie modification.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Information Disclosure,
Input Manipulation
Impact:
Loss of Confidentiality,
Loss of Integrity
Exploit:
Exploit Unknown
OSVDB:
Web Related
|
|
Products |
Unknown or Incomplete
|
|
|
|
Credit |
Unknown or Incomplete
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|