Description
CubeCart before 6.1.13 has SQL Injection via the validate[] parameter of the "I forgot my Password!" feature.
Remediation
References
Related Vulnerabilities
WordPress Plugin wpForo Forum SQL Injection (2.3.3)
MySQL Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2005-0004)
WordPress Plugin Related Posts by Zemanta Cross-Site Request Forgery (1.3.1)
Apache Traffic Server Uncontrolled Resource Consumption Vulnerability (CVE-2018-8005)