Back
CVE-2005-0442
Directory traversal vulnerability in index.php for CubeCart 2.0.4 allows remote attackers to read arbitrary files via the language parameter.
Published: May 2, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (2)
| Vendor | Product | Version |
|---|---|---|
| devellion | cubecart | 2.0.1 |
| devellion | cubecart | 2.0.4 |
GitHub Security Advisory GHSA-rpr6-8769-j952
Directory traversal vulnerability in index.php for CubeCart 2.0.4 allows remote attackers to read...
References (12)
- http://marc.info/?l=bugtraq&m=110842125901191&w=2
- http://marc.info/?l=bugtraq&m=111281888605580&w=2
- http://secunia.com/advisories/14272 Patch, Vendor Advisory
- http://www.cubecart.com/site/forums/index.php?showtopic=5741 Patch, Vendor Advisory
- http://www.securityfocus.com/bid/12549 Exploit, Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19322
- http://marc.info/?l=bugtraq&m=110842125901191&w=2
- http://marc.info/?l=bugtraq&m=111281888605580&w=2
- http://secunia.com/advisories/14272 Patch, Vendor Advisory
- http://www.cubecart.com/site/forums/index.php?showtopic=5741 Patch, Vendor Advisory
- http://www.securityfocus.com/bid/12549 Exploit, Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19322
Risk Scores
CVSS Score
5.0 / 10
EPSS Score
8.31%
Top 6% most likely to be exploited
Threat Score
22.5 / 100
Data Sources
NVD
EPSS
GitHub