Loading...
Loading...
The Cubecart::_basket method in classes/cubecart.class.php in CubeCart 5.0.0 through 5.2.0 allows remote attackers to unserialize arbitrary PHP objects via a crafted shipping parameter, as demonstrated by modifying the application configuration using the Config object.
February 8, 2013
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-1465
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.