The files function in the administration section in CS-Cart 4.6.2 and previous versions allows malicious users to execute arbitrary PHP code via vectors involving a custom page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cs-cart cs-cart |