First published: Fri Apr 28 2017(Updated: )
Directory traversal vulnerability in CubeCart versions prior to 6.1.4 allows remote authenticated attackers to read arbitrary files via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Cubecart Cubecart | <=6.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-2090 has a severity rating that indicates it allows unauthorized access to sensitive files, which can have significant security implications.
To fix CVE-2017-2090, upgrade to CubeCart version 6.1.4 or later.
CVE-2017-2090 affects CubeCart versions prior to 6.1.4, specifically up to version 6.1.3.
CVE-2017-2090 can be exploited by remote authenticated attackers.
CVE-2017-2090 is categorized as a directory traversal vulnerability.