Description
An SQL injection vulnerability exists in CubeCart prior to 6.6.0, which may allow an attacker to execute an arbitrary SQL statement on the product.
CVSS 6.3EPSS 0.179%Risk 0.64
View source- Published
- 2026-04-17 06:16:29
- Affected versions
- <6.6.0
- Type
- Core software
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L