Description
SQL injection vulnerability in includes/content/viewProd.inc.php in CubeCart before 4.3.7 remote attackers to execute arbitrary SQL commands via the productId parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin Share Buttons by AddThis Cross-Site Scripting (4.0.7)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4300)
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-16942)
WordPress Plugin Live Scores for SportsPress Multiple Vulnerabilities (1.9.0)