Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple open redirect vulnerabilities in CubeCart 3.0.20 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) r parameter to switch.php or (2) goto parameter to admin/login.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CubeCart URI重定向漏洞
Vulnerability Description
Devellion CubeCart是英国Devellion公司的一套免费且开源的电子商务购物车软件。该软件支持在网上商店销售产品、添加/编辑产品或图像等。 CubeCart中存在URI重定向漏洞,该漏洞源于应用程序对用户提供的数据未经正确过滤。攻击者可利用该漏洞进行网络钓鱼攻击,也可能执行其它攻击。CubeCart 3.0.20版本存在漏洞,其它版本也可能受到影响。
CVSS Information
N/A
Vulnerability Type
N/A