Cross-Site Scripting Vulnerabilities in CubeCart by CubeCart
CVE-2008-1550

Currently unrated

Key Information:

Vendor

Cubecart

Status
Vendor
CVE Published:
31 March 2008

What is CVE-2008-1550?

Multiple cross-site scripting (XSS) vulnerabilities have been identified in the index.php file of CubeCart version 4.2.1. These vulnerabilities enable remote attackers to inject arbitrary web scripts or HTML into the application through specially crafted parameters. Specifically, it allows for the exploitation of the '_a' parameter during a searchStr action and the 'Submit' parameter, leading to potential unauthorized actions and information disclosure.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.