2.1
CVSSv2

CVE-2012-2300

Published: 14/08/2012 Updated: 15/08/2012
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:N/AC:H/Au:S/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in the Ubercart module 6.x-2.x prior to 6.x-2.8 and 7.x-3.x prior to 7.x-3.1 for Drupal allow remote authenticated users with the administer product classes permission to inject arbitrary web script or HTML via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

ubercart ubercart 6.x-2.0

ubercart ubercart 6.x-2.3

ubercart ubercart 7.x-3.0

ubercart ubercart 6.x-2.2

ubercart ubercart 6.x-2.7

ubercart ubercart 6.x-2.6

ubercart ubercart 6.x-2.1

ubercart ubercart 6.x-2.4