exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

CubeCart 4.4.6 Open URL Redirection

CubeCart 4.4.6 Open URL Redirection
Posted Dec 24, 2012
Authored by Aung Khant | Site yehg.net

CubeCart versions 4.4.6 and below suffer from an open URL redirection vulnerability.

tags | exploit
SHA-256 | 2155a336ea5b466547cbd01cc22b43133122aa3dc4f50f21da60e598c5aa3acb

CubeCart 4.4.6 Open URL Redirection

Change Mirror Download
1. OVERVIEW

CubeCart 4.4.6 and lower versions are vulnerable to Open URL Redirection.


2. BACKGROUND

CubeCart is an "out of the box" ecommerce shopping cart software
solution which has been written to run on servers that have PHP &
MySQL support. With CubeCart you can quickly setup a powerful online
store which can be used to sell digital or tangible products to new
and existing customers all over the world.


3. VULNERABILITY DESCRIPTION

CubeCart 4.4.6 and lower versions contain a flaw that allows a remote
cross site redirection attack. This flaw exists because the
application does not properly sanitise the parameters, "r" and
"redir". This allows an attacker to create a specially crafted URL,
that if clicked, would redirect a victim from the intended legitimate
web site to an arbitrary web site of the attacker's choice.


4. VERSIONS AFFECTED

4.4.6 and lower


5. Affected URLs and Parameters

/index.php (r parameter)
/index.php (redir parameter)

/index.php?_g=sw&r=//yehg.net/
/index.php?_a=login&redir=//yehg.net


6. SOLUTION

The CubeCart 4.x version family is no longer maintained by the vendor.
Upgrade to the currently supported latest latest CubeCart version - 5.x.


7. VENDOR

CubeCart Development Team
https://cubecart.com/


8. CREDIT

Aung Khant, https://yehg.net, YGN Ethical Hacker Group, Myanmar.


9. DISCLOSURE TIME-LINE

2012-06-22: CubeCart 4.x in End-of-Support/Maintenance circle
2012-12-24: Vulnerability disclosed


10. REFERENCES

Original Advisory URL:
https://yehg.net/lab/pr0js/advisories/%5Bcubecart_4.4.6%5D_open_url_redirection
CubeCart Home Page: https://cubecart.com/
CubeCart Bug-Fix Announcement:
https://forums.cubecart.com/topic/45456-cubecart-447-released/
CubeCart4 End-of-Life Announcement:
https://forums.cubecart.com/topic/46765-cubecart-v4-end-of-life-saturday-22-december/

#yehg [2012-12-24]

---------------------------------
Best regards,
YGN Ethical Hacker Group
Yangon, Myanmar
https://yehg.net
Our Lab | https://yehg.net/lab
Our Directory | https://yehg.net/hwd
Login or Register to add favorites

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    17 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close