CS-Cart 4.3.10 Unauthenticated XXE Injection

CS-Cart versions 4.3.10 and below suffer from an unauthenticated XML external entity (XXE) injection vulnerability.

Leave a Reply