CubeCart
cpe:2.3:a:cubecart:cubecart:*:*:*:*:*:*:*
- < 6.6.0
A command injection vulnerability has been identified in CubeCart versions prior to 6.6.0. This vulnerability allows users with administrative privileges to execute arbitrary operating system commands.
Exploitation of this vulnerability could lead to unauthorized execution of operating system commands with the privileges of the web server user.
Users are advised to update CubeCart to version 6.6.0 or later, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.