Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-0606
Description:Cross-site scripting (XSS) vulnerability in settings.inc.php for CubeCart 2.0.0 through 2.0.5, as used in multiple PHP files, allows remote attackers to inject arbitrary HTML or web script via the (1) cat_id, (2) PHPSESSID, (3) view_doc, (4) product, (5) session, (6) catname, (7) search, or (8) page parameters.
Test IDs: 1.3.6.1.4.1.25623.1.0.51762  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-0606
BugTraq ID: 12658
http://www.securityfocus.com/bid/12658
http://lostmon.blogspot.com/2005/02/cubecart-20x-multiple-variable-xss.html
http://securitytracker.com/id?1013304
http://secunia.com/advisories/14416
XForce ISS Database: cubecart-multiple-xss(20637)
https://exchange.xforce.ibmcloud.com/vulnerabilities/20637




© 1998-2025 E-Soft Inc. All rights reserved.