6.8
CVSSv2

CVE-2009-4773

Published: 20/04/2010 Updated: 17/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in the order-management functionality in the Ubercart module 5.x prior to 5.x-1.9 and 6.x prior to 6.x-2.1 for Drupal allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

ubercart ubercart 5.x-1.2

ubercart ubercart 5.x-1.1

ubercart ubercart 5.x-1.0

ubercart ubercart 6.x-2.0

ubercart ubercart 5.x-1.5

ubercart ubercart 5.x-1.4

ubercart ubercart 5.x-1.3

ubercart ubercart 5.x-1.8

ubercart ubercart 5.x-1.7

ubercart ubercart 5.x-1.6