Jump to content
pedala1

CubeCart 4.4.6 SQL Injection

Recommended Posts

Posted

1. OVERVIEW

The CubeCart 4.4.6 and lower versions are vulnerable to SQL Injection.

2. BACKGROUND

CubeCart is an "out of the box" ecommerce shopping cart software

solution which has been written to run on servers that have PHP &

MySQL support. With CubeCart you can quickly setup a powerful online

store which can be used to sell digital or tangible products to new

and existing customers all over the world.

3. VULNERABILITY DESCRIPTION

Multiple parameters are not properly sanitized, which allows attacker

to conduct SQL Injection attack. This could an attacker to inject or

manipulate SQL queries in the back-end database, allowing for the

manipulation or disclosure of arbitrary data.

4. VERSIONS AFFECTED

4.4.6 and lower

5. Affected URLs and Parameters

/admin.php (active parameter)

/admin.php (cat_id parameter)

/admin.php (orderCol parameter)

/admin.php (orderDir parameter)

6. SOLUTION

The CubeCart 4.x version family is no longer maintained by the vendor.

Upgrade to the currently supported latest CubeCart version - 5.x.

7. VENDOR

CubeCart Development Team

eCommerce Software | CubeCart

8. CREDIT

Aung Khant, YGN Ethical Hacker Group :: Security Research, YGN Ethical Hacker Group, Myanmar.

9. DISCLOSURE TIME-LINE

2012-12-22: CubeCart 4.x in End-of-Support/Maintenance circle

2012-12-24: Vulnerability disclosed

Sursa: CubeCart 4.4.6 SQL Injection ? Packet Storm

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...