CubeCart Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-20703 - Vulnerability Database

CubeCart Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-20703

Medium
Reference: CVE-2018-20703
Title: CubeCart Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

CubeCart 6.2.2 has Reflected XSS via a /ADMIN-FILE/ query string.