CubeCart 是一款电子商务软件解决方案。在 6.7.5 版本之前, 中的 方法使用 过滤器允许在错误、信息和警告消息中保留锚点( )元素,但同时保留了不安全的 值及 事件处理程序。攻击者控制的搜索或输入数据若进入 GUI 消息,可以携带 URI 或事件处理器通过该过滤器。当受害者查看或交互渲染后的锚点时,其浏览器会话中将执行 JavaScript 代码,从而可能导致会话暴露或未经授权的应用程序操作。该问题已在 6.7.5 版本中修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-54646 | 7.2 HIGH | CubeCart: SQL Identifier Injection via Backtick Bypass in maintenance.index.inc.php |
| CVE-2026-54647 | 7.2 HIGH | CubeCart : SQL Injection via download_expire Parameter in settings.index.inc.php |
| CVE-2026-54648 | 6.5 MEDIUM | CubeCart: Missing Authorization Check in customers.gdpr.inc.php Leads to Unauthorized Cust |
| CVE-2026-54643 | 5.4 MEDIUM | CubeCart: Missing Authorization Check for Order Note Deletion in orders.index.inc.php |
| CVE-2026-54642 | 5.3 MEDIUM | CubeCart: CSRF Protection Missing for Download Resets and Card Deletions in orders.index.i |
| CVE-2026-54645 | 4.8 MEDIUM | CubeCart: Stored XSS in Product Description Editor via Global Sanitizer Bypass |
No comments yet