First published: Sat Oct 08 2011(Updated: )
SQL injection vulnerability in index.php in CubeCart 4.3.3 allows remote attackers to execute arbitrary SQL commands via the searchStr parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cubecart Cubecart | =4.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4903 is classified as a high severity SQL injection vulnerability.
To fix CVE-2010-4903, upgrade your CubeCart installation to a version later than 4.3.3 which addresses this vulnerability.
CVE-2010-4903 can lead to unauthorized data access and manipulation through arbitrary SQL commands.
CVE-2010-4903 affects users running CubeCart version 4.3.3.
Attackers can exploit CVE-2010-4903 to perform unauthorized SQL queries, which can compromise database integrity.