5
CVSSv2

CVE-2012-2702

Published: 27/06/2012 Updated: 29/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Ubercart Product Keys module 6.x-1.x prior to 6.x-1.1 for Drupal does not properly check access for product keys, which allows remote malicious users to read all unassigned product keys via certain conditions related to the uid.

Vulnerable Product Search on Vulmon Subscribe to Product

tony_freixas ubercart_product_keys 6.x-1.0