CubeCart Path Traversal Vulnerability Allowing Directory Access for Admin Users

Vulnerability

A path traversal vulnerability has been identified in CubeCart versions prior to 6.6.0. This vulnerability allows users with administrative privileges to access higher-level directories that should otherwise be restricted.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive files or directories on the server.

Remediation

Users are advised to update CubeCart to version 6.6.0 or later, where this vulnerability has been addressed.

Added: Apr 17, 2026, 6:23 AM
Updated: Apr 17, 2026, 6:23 AM

Vulnerability Rating

Custom Algorithm
spread
5.2
impact
0.2
exploitability
5.0
remediation
7.7
relevance
6.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.