Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Cubecart HIGH 7.5
CVE-2007-2862

Multiple SQL injection vulnerabilities in CubeCart 3.0.16 might allow remote attackers to execute arbitrary SQL commands via an unspecified parameter…

Mitigation only
Fix from $1,950 2007-05-24
Cubecart MEDIUM 5.0
CVE-2007-2550

Multiple CRLF injection vulnerabilities in Devellion CubeCart 3.0.15 allow remote attackers to inject arbitrary HTTP headers and conduct HTTP respons…

Mitigation only
Fix from $1,600 2007-05-09
Cubecart HIGH 7.5
CVE-2006-5107

Multiple SQL injection vulnerabilities in Devellion CubeCart 2.0.x allow remote attackers to execute arbitrary SQL commands via (1) the user_name par…

No fix yet
Fix from $1,950 2006-10-03
Cubecart MEDIUM 6.8
CVE-2006-5108EPSS 6%

Multiple cross-site scripting (XSS) vulnerabilities in Devellion CubeCart 2.0.x allow remote attackers to inject arbitrary web script or HTML via the…

No fix yet
Fix from $1,600 2006-10-03
Cubecart MEDIUM 5.0
CVE-2006-5109

Devellion CubeCart 2.0.x allows remote attackers to obtain sensitive information via a direct request for (1) link_navi.php or (2) spotlight.php, whi…

No fix yet
Fix from $1,600 2006-10-03
Cubecart HIGH 7.5
CVE-2006-0064

PHP remote file include vulnerability in includes/orderSuccess.inc.php in CubeCart allows remote attackers to execute arbitrary PHP code via a URL in…

No fix yet
Fix from $1,950 2006-01-03
Cubecart MEDIUM 5.0
CVE-2005-1033

CubeCart 2.0.6 allows remote attackers to obtain sensitive information via an invalid (1) language parameter to index.php, (2) PHPSESSID parameter to…

Mitigation only
Fix from $1,600 2005-05-02
Cubecart MEDIUM 5.0
CVE-2004-1579

index.php in CubeCart 2.0.1 allows remote attackers to gain sensitive information via an HTTP request with an invalid cat_id parameter, which reveals…

Mitigation only
Fix from $1,600 2004-12-31