CVE-2006-0922

CubeCart 3.0-3.6 - Unauthenticated Arbitrary File Upload via FileManager CurrentFolder Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-0922. PoCs published by NSA Group.

AI-analyzed exploit summary This exploit demonstrates an arbitrary file upload vulnerability in CubeCart, allowing attackers to upload and execute arbitrary code on the server. The PoC provides an HTML form that submits a file to a vulnerable PHP connector script.

Description

CubeCart 3.0 through 3.6 does not properly check authorization for an administration session because of a missing auth.inc.php include, which results in an absolute path traversal vulnerability in FileUpload in connector.php (aka upload.php) that allows remote attackers to upload arbitrary files via a modified CurrentFolder parameter in a direct request to admin/filemanager/upload.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by NSA Group · htmlwebappsphp
https://www.exploit-db.com/exploits/27304

This exploit demonstrates an arbitrary file upload vulnerability in CubeCart, allowing attackers to upload and execute arbitrary code on the server. The PoC provides an HTML form that submits a file to a vulnerable PHP connector script.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: CubeCart (version not specified)
No auth needed
Prerequisites: Access to the vulnerable CubeCart admin interface · File upload functionality enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/24883
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/482
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/425931/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/16796
Various Sources x_refsource_misc
http://www.nsag.ru/vuln/892.html

Scores

EPSS 0.0796
EPSS Percentile 94.0%

Details

Status published
Products (11)
devellion/cubecart 3.0.0_alpha
devellion/cubecart 3.0.0_alpha-2
devellion/cubecart 3.0.0_alpha-rgf
devellion/cubecart 3.0.0_beta
devellion/cubecart 3.0.0_final
devellion/cubecart 3.0.1
devellion/cubecart 3.0.2
devellion/cubecart 3.0.3
devellion/cubecart 3.0.4
devellion/cubecart 3.0.5
... and 1 more
Published Feb 28, 2006
Tracked Since Feb 18, 2026