CVE-2023-42428: Path Traversal
Published Nov 17, 2023
·Updated
Directory traversal vulnerability in CubeCart prior to 6.5.3 allows a remote authenticated attacker with an administrative privilege to delete directories and files in the system.
Affected Software
1 affected component
Cubecart CubeCart<6.5.3
Remediation
Patch Available
Event History
Nov 17, 2023
CVE Published
04:37 AM
Data Sourced
04:37 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this security issue in CubeCart?
The vulnerability ID for this security issue in CubeCart is CVE-2023-42428.
2
What is the severity level of CVE-2023-42428?
The severity level of CVE-2023-42428 is medium with a score of 6.5.
3
How does the directory traversal vulnerability in CubeCart allow an attacker to delete directories and files?
The directory traversal vulnerability in CubeCart allows a remote authenticated attacker with administrative privileges to delete directories and files in the system.
4
Which version of CubeCart is affected by this vulnerability?
CubeCart prior to version 6.5.3 is affected by this vulnerability.
5
How can I mitigate the CVE-2023-42428 vulnerability in CubeCart?
To mitigate the CVE-2023-42428 vulnerability in CubeCart, upgrade to version 6.5.3 or later.