High severity8.0NVD Advisory· Published Apr 29, 2024· Updated Jun 17, 2026
CVE-2024-33438
CVE-2024-33438
Description
File Upload vulnerability in CubeCart before 6.5.5 allows an authenticated user to execute arbitrary code via a crafted .phar file.
Affected products
3Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.