CubeCart 是一款电子商务软件解决方案。在 6.7.5 版本之前, 文件中的 (下载计数器重置)操作和 (删除已存储的支付卡片)操作使用了会更改系统状态的 GET 请求,并且这些操作未包含在 中的 CSRF 防护映射中。远程攻击者可诱导已认证的管理员在未经过有效会话令牌验证的情况下发出上述请求,从而导致电子下载使用计数器被意外重置或客户已存储的支付卡片令牌被删除。该问题已在 6.7.5 版本中修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-54646 | 7.2 HIGH | CubeCart: SQL Identifier Injection via Backtick Bypass in maintenance.index.inc.php |
| CVE-2026-54647 | 7.2 HIGH | CubeCart : SQL Injection via download_expire Parameter in settings.index.inc.php |
| CVE-2026-54648 | 6.5 MEDIUM | CubeCart: Missing Authorization Check in customers.gdpr.inc.php Leads to Unauthorized Cust |
| CVE-2026-54644 | 6.1 MEDIUM | CubeCart: XSS via Anchor Tag Attribute Injection in gui.class.php Message System |
| CVE-2026-54643 | 5.4 MEDIUM | CubeCart: Missing Authorization Check for Order Note Deletion in orders.index.inc.php |
| CVE-2026-54645 | 4.8 MEDIUM | CubeCart: Stored XSS in Product Description Editor via Global Sanitizer Bypass |
No comments yet