CVE-2015-3300 | TheCartPress eCommerce Shopping Cart up to 1.3.9.2 on WordPress shopping-cart/checkout/ post_type cross site scripting (ID 131673 / EDB-36860)
A vulnerability has been found in TheCartPress eCommerce Shopping Cart up to 1.3.9.2 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the file shopping-cart/checkout/. The manipulation of the argument post_type leads to cross site scripting.
This vulnerability is known as CVE-2015-3300. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.