Directory traversal vulnerability in index.php for CubeCart 2.0.4 allows remote attackers to read arbitrary files via the language parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Cubecart | Devellion | 2.0.1 (including) | 2.0.1 (including) |
| Cubecart | Devellion | 2.0.4 (including) | 2.0.4 (including) |