CubeCart 是一款电子商务软件解决方案。在 6.7.5 版本之前, 文件中的“删除笔记”(delete-note)处理器在从 表中删除记录时,仅验证了 和 参数的存在性,而未检查操作者是否具备订单删除权限(CC_PERM_DELETE)。因此,一名经过身份验证但缺乏订单修改权限的管理员,可以通过直接调用该处理器并传入有效的标识符,删除订单历史笔记,从而移除运营记录和审计跟踪数据。该问题已在 6.7.5 版本中修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-54646 | 7.2 HIGH | CubeCart: SQL Identifier Injection via Backtick Bypass in maintenance.index.inc.php |
| CVE-2026-54647 | 7.2 HIGH | CubeCart : SQL Injection via download_expire Parameter in settings.index.inc.php |
| CVE-2026-54648 | 6.5 MEDIUM | CubeCart: Missing Authorization Check in customers.gdpr.inc.php Leads to Unauthorized Cust |
| CVE-2026-54644 | 6.1 MEDIUM | CubeCart: XSS via Anchor Tag Attribute Injection in gui.class.php Message System |
| CVE-2026-54642 | 5.3 MEDIUM | CubeCart: CSRF Protection Missing for Download Resets and Card Deletions in orders.index.i |
| CVE-2026-54645 | 4.8 MEDIUM | CubeCart: Stored XSS in Product Description Editor via Global Sanitizer Bypass |
No comments yet