CVE-2023-47675: OS Command Injection
Published Nov 17, 2023
·Updated
CubeCart prior to 6.5.3 allows a remote authenticated attacker with an administrative privilege to execute an arbitrary OS command.
Affected Software
1 affected component
Cubecart CubeCart<6.5.3
Remediation
Patch Available
Event History
Nov 17, 2023
CVE Published
04:37 AM
Data Sourced
04:37 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this CubeCart vulnerability?
The vulnerability ID for this CubeCart vulnerability is CVE-2023-47675.
2
What is the severity level of CVE-2023-47675?
The severity level of CVE-2023-47675 is high with a CVSS score of 7.2.
3
What is the affected software version for CVE-2023-47675?
The affected software version for CVE-2023-47675 is CubeCart prior to version 6.5.3.
4
How does CVE-2023-47675 impact CubeCart?
CVE-2023-47675 allows a remote authenticated attacker with administrative privilege to execute arbitrary OS commands.
5
Are there any references or sources for CVE-2023-47675?
Yes, there are references available for CVE-2023-47675. You can check the links for more information: [Link 1](https://forums.cubecart.com/topic/58736-cubecart-653-released-security-update/) and [Link 2](https://jvn.jp/en/jp/JVN22220399/).