Lucene search

K
cveRedhatCVE-2012-0865
HistoryFeb 21, 2012 - 1:31 p.m.

CVE-2012-0865

2012-02-2113:31:45
CWE-20
redhat
web.nvd.nist.gov
30
cve
cubecart
vulnerability
open redirect
phishing
nvd

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

AI Score

7

Confidence

Low

EPSS

0.017

Percentile

87.9%

Multiple open redirect vulnerabilities in CubeCart 3.0.20 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) r parameter to switch.php or (2) goto parameter to admin/login.php.

Affected configurations

Nvd
Node
cubecartcubecartRange3.0.20
OR
cubecartcubecartMatch3.0.0
OR
cubecartcubecartMatch3.0.1
OR
cubecartcubecartMatch3.0.2
OR
cubecartcubecartMatch3.0.3
OR
cubecartcubecartMatch3.0.4
OR
cubecartcubecartMatch3.0.5
OR
cubecartcubecartMatch3.0.6
OR
cubecartcubecartMatch3.0.7
OR
cubecartcubecartMatch3.0.8
OR
cubecartcubecartMatch3.0.9
OR
cubecartcubecartMatch3.0.10
OR
cubecartcubecartMatch3.0.11
OR
cubecartcubecartMatch3.0.12
OR
cubecartcubecartMatch3.0.13
OR
cubecartcubecartMatch3.0.14
OR
cubecartcubecartMatch3.0.15
OR
cubecartcubecartMatch3.0.16
OR
cubecartcubecartMatch3.0.17
OR
cubecartcubecartMatch3.0.18
OR
cubecartcubecartMatch3.0.19
VendorProductVersionCPE
cubecartcubecart*cpe:2.3:a:cubecart:cubecart:*:*:*:*:*:*:*:*
cubecartcubecart3.0.0cpe:2.3:a:cubecart:cubecart:3.0.0:*:*:*:*:*:*:*
cubecartcubecart3.0.1cpe:2.3:a:cubecart:cubecart:3.0.1:*:*:*:*:*:*:*
cubecartcubecart3.0.2cpe:2.3:a:cubecart:cubecart:3.0.2:*:*:*:*:*:*:*
cubecartcubecart3.0.3cpe:2.3:a:cubecart:cubecart:3.0.3:*:*:*:*:*:*:*
cubecartcubecart3.0.4cpe:2.3:a:cubecart:cubecart:3.0.4:*:*:*:*:*:*:*
cubecartcubecart3.0.5cpe:2.3:a:cubecart:cubecart:3.0.5:*:*:*:*:*:*:*
cubecartcubecart3.0.6cpe:2.3:a:cubecart:cubecart:3.0.6:*:*:*:*:*:*:*
cubecartcubecart3.0.7cpe:2.3:a:cubecart:cubecart:3.0.7:*:*:*:*:*:*:*
cubecartcubecart3.0.8cpe:2.3:a:cubecart:cubecart:3.0.8:*:*:*:*:*:*:*
Rows per page:
1-10 of 211

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

AI Score

7

Confidence

Low

EPSS

0.017

Percentile

87.9%

Related for CVE-2012-0865