A file upload vulnerability was discovered in CS Cart 4.18.3, allows attackers to execute arbitrary code. CS Cart 4.18.3 allows unrestricted upload of HTML files, which are rendered directly in the browser when accessed. This allows an attacker to upload a crafted HTML file containing malicious content, such as a fake login form for credential harvesting or scripts for Cross-Site Scripting (XSS) attacks. Since the content is served from a trusted domain, it significantly increases the likelihood of successful phishing or script execution against other users.
History

Wed, 06 Aug 2025 16:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:cs-cart:cs-cart:4.18.3:*:*:*:*:*:*:*

Mon, 04 Aug 2025 09:30:00 +0000

Type Values Removed Values Added
First Time appeared Cs-cart
Cs-cart cs-cart
Vendors & Products Cs-cart
Cs-cart cs-cart

Thu, 31 Jul 2025 20:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-79
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}


Thu, 31 Jul 2025 16:15:00 +0000

Type Values Removed Values Added
Description A file upload vulnerability was discovered in CS Cart 4.18.3, allows attackers to execute arbitrary code. CS Cart 4.18.3 allows unrestricted upload of HTML files, which are rendered directly in the browser when accessed. This allows an attacker to upload a crafted HTML file containing malicious content, such as a fake login form for credential harvesting or scripts for Cross-Site Scripting (XSS) attacks. Since the content is served from a trusted domain, it significantly increases the likelihood of successful phishing or script execution against other users.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2025-07-31T00:00:00.000Z

Updated: 2025-07-31T19:58:25.756Z

Reserved: 2025-06-16T00:00:00.000Z

Link: CVE-2025-50848

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2025-07-31T16:15:30.843

Modified: 2025-08-06T16:35:06.037

Link: CVE-2025-50848

cve-icon Redhat

No data.