CVE-2010-1931
10.06.2010, 00:30
SQL injection vulnerability in includes/content/cart.inc.php in CubeCart PHP Shopping cart 4.3.4 through 4.3.9 allows remote attackers to execute arbitrary SQL commands via the shipKey parameter to index.php.
Vendor | Product | Version |
---|---|---|
cubecart | cubecart | 4.3.4 |
cubecart | cubecart | 4.3.5 |
cubecart | cubecart | 4.3.6 |
cubecart | cubecart | 4.3.7 |
cubecart | cubecart | 4.3.8 |
cubecart | cubecart | 4.3.9 |
𝑥
= Vulnerable software versions
References