CubeCart 3.0.0. Authors Site: http://www.cubecart.com CubeCart is described by its authors as: 'What is CubeCart? CubeCart is an eCommerce script written with PHP & MySQL. With CubeCart you can setup a powerful online store as long as you have hosting supporting PHP and one MySQL database.' +-[Examples:]--------------------------------------------------+ [1]------------------------------------------------------------+ Phishing Attack: http://www.victimsite.com/switch.php?r=/index.php?¤cy=EUR http://www.victimsite.com/switch.php?r=http://www.badguy.com?¤cy=EUR +-[Notes:]-----------------------------------------------------+ Vulnerabilities found on: 10/04/2005 Author(s) Informed on: 10/04/2005 Author(s) Response: 11/04/2005 Author(s) Fix: 11/04/2005 JohnC@NoBytes.com http://www.NoBytes.com