PT-2023-30561 · Cubecart · Cubecart

Gen Sato

·

Published

2023-11-17

·

Updated

2023-11-22

·

CVE-2023-47675

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CubeCart versions prior to 6.5.3
Description The issue allows a remote authenticated attacker with administrative privileges to execute an arbitrary OS command.
Recommendations For versions prior to 6.5.3, update to version 6.5.3 or later to resolve the issue.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2023-47675

Affected Products

Cubecart