Sunday, September 12, 2010

CubeCart version 4.3.3: SQL Injection and XSS vulnerabilities

Users of CubeCart version 4.3.3 please be advised of SQL Injection and XSS vulnerabilities that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
CubeCart-SA-09/09/2010: SQL Injection and XSS vulnerabilities in CubeCart version 4.3.3
list of security vulnerabilities found in a

number of web applications while testing our latest version of Acunetix

WVS v7 . In this blog post, we will look into the details of a number of

security problems discovered by Acunetix WVS in CubeCart.



"CubeCart is a fully featured ecommerce shopping cart solution used by

over a million store owners around the world."


Read more at www.criticalwatch.com
 

No comments:

Post a Comment