There is an SQL Injection vulnerability in the CubeCart PHP Shopping cart, this vulnerability may be exploited by HTTP POSTing mailicious data to the index.php script of CubeCart. As an example, exploitation may result in leak of sensitive information or injection of mailicious code into the shopping cart's web page.