VendorsDevellioncubecart3.0.12
Vulnerabilities

Devellion Cubecart 3.0.12

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2006-4527
includes/content/gateway.inc.php in CubeCart 3.0.12 and earlier, when magic_quotes_gpc is disabled, uses an insufficiently restrictive regular expression to validate the gateway parameter, which allows remote attackers to conduct PHP remote file inclusion attacks.
Published 2006-09-01 · Modified
2.6EPSS 0.015