Cross-site scripting (XSS) vulnerability in Open Solution Quick.Cms 5.0 and Quick.Cart 6.0, possibly as downloaded before December 19, 2012, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to admin.php. NOTE: this might be a duplicate of CVE-2008-4140.
History

Mon, 16 Mar 2026 18:00:00 +0000

Type Values Removed Values Added
First Time appeared Opensolution quick.cart
CPEs cpe:2.3:a:opensolution:quick_cart:6.0:*:*:*:*:*:*:* cpe:2.3:a:opensolution:quick.cart:6.0:*:*:*:*:*:*:*
Vendors & Products Opensolution quick Cart
Opensolution quick.cart

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2014-03-24T14:00:00.000Z

Updated: 2024-08-06T21:28:39.936Z

Reserved: 2012-12-19T00:00:00.000Z

Link: CVE-2012-6430

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-03-24T16:43:01.910

Modified: 2026-03-16T17:53:49.570

Link: CVE-2012-6430

cve-icon Redhat

No data.