PT-2026-95152 · Cubecart · Cubecart
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
CubeCart versions prior to 6.7.5
Description
The
errorMessage() function in classes/gui.class.php uses strip tags to allow anchor elements in error, information, and warning messages. However, it fails to filter unsafe href values and onclick event handlers. An attacker can provide malicious search or input data that bypasses the filter using a javascript: URI or event handler. When a user views or interacts with the rendered anchor, JavaScript is executed in their browser session, which can lead to session exposure or unauthorized application actions.Recommendations
Update to version 6.7.5.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cubecart