Files
CVEs-PoC/2006/CVE-2006-4527.md
T
2025-09-29 21:09:30 +02:00

753 B

CVE-2006-4527

Description

includes/content/gateway.inc.php in CubeCart 3.0.12 and earlier, when magic_quotes_gpc is disabled, uses an insufficiently restrictive regular expression to validate the gateway parameter, which allows remote attackers to conduct PHP remote file inclusion attacks.

POC

Reference

Github

No PoCs found on GitHub currently.