CVE-2009-4060
24.11.2009, 02:30
SQL injection vulnerability in includes/content/viewProd.inc.php in CubeCart before 4.3.7 remote attackers to execute arbitrary SQL commands via the productId parameter.
Vendor | Product | Version |
---|---|---|
cubecart | cubecart | 𝑥 ≤ 4.3.6 |
cubecart | cubecart | 3.0.0 |
cubecart | cubecart | 3.0.1 |
cubecart | cubecart | 3.0.2 |
cubecart | cubecart | 3.0.3 |
cubecart | cubecart | 3.0.4 |
cubecart | cubecart | 3.0.5 |
cubecart | cubecart | 3.0.6 |
cubecart | cubecart | 3.0.7 |
cubecart | cubecart | 3.0.8 |
cubecart | cubecart | 3.0.9 |
cubecart | cubecart | 3.0.10 |
cubecart | cubecart | 3.0.11 |
cubecart | cubecart | 3.0.12 |
cubecart | cubecart | 3.0.13 |
cubecart | cubecart | 3.0.14 |
cubecart | cubecart | 3.0.15 |
cubecart | cubecart | 3.0.16 |
cubecart | cubecart | 3.0.17 |
cubecart | cubecart | 3.0.18 |
cubecart | cubecart | 3.0.19 |
cubecart | cubecart | 3.0.20 |
cubecart | cubecart | 4.0.0 |
cubecart | cubecart | 4.0.0:beta_2 |
cubecart | cubecart | 4.0.0:beta_3 |
cubecart | cubecart | 4.0.0:rc_1 |
cubecart | cubecart | 4.0.1 |
cubecart | cubecart | 4.0.2 |
cubecart | cubecart | 4.0.3 |
cubecart | cubecart | 4.1.0 |
cubecart | cubecart | 4.1.0:rc_1 |
cubecart | cubecart | 4.1.0:rc_2 |
cubecart | cubecart | 4.1.1 |
cubecart | cubecart | 4.2.0 |
cubecart | cubecart | 4.2.1 |
cubecart | cubecart | 4.2.2 |
cubecart | cubecart | 4.2.3 |
cubecart | cubecart | 4.3.0 |
cubecart | cubecart | 4.3.1 |
cubecart | cubecart | 4.3.2 |
cubecart | cubecart | 4.3.3 |
cubecart | cubecart | 4.3.4 |
cubecart | cubecart | 4.3.5 |
𝑥
= Vulnerable software versions
References