Lucene search

K
cve[email protected]CVE-2009-4772
HistoryApr 20, 2010 - 2:30 p.m.

CVE-2009-4772

2010-04-2014:30:01
web.nvd.nist.gov
19
cve-2009-4772
paypal
website payments standard
ubercart
drupal
vulnerability
information security
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.2 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

65.8%

Unspecified vulnerability in the PayPal Website Payments Standard functionality in the Ubercart module 5.x before 5.x-1.9 and 6.x before 6.x-2.1 for Drupal, when a custom checkout completion message is enabled, allows attackers to obtain sensitive information via unknown vectors.

Affected configurations

NVD
Node
ubercartubercartMatch5.x-1.0
OR
ubercartubercartMatch5.x-1.0alpha1
OR
ubercartubercartMatch5.x-1.0alpha2
OR
ubercartubercartMatch5.x-1.0alpha3
OR
ubercartubercartMatch5.x-1.0alpha4
OR
ubercartubercartMatch5.x-1.0alpha5
OR
ubercartubercartMatch5.x-1.0alpha6
OR
ubercartubercartMatch5.x-1.0alpha6b
OR
ubercartubercartMatch5.x-1.0alpha6c
OR
ubercartubercartMatch5.x-1.0alpha7
OR
ubercartubercartMatch5.x-1.0alpha7b
OR
ubercartubercartMatch5.x-1.0alpha7c
OR
ubercartubercartMatch5.x-1.0alpha7d
OR
ubercartubercartMatch5.x-1.0alpha7e
OR
ubercartubercartMatch5.x-1.0alpha8
OR
ubercartubercartMatch5.x-1.0beta1
OR
ubercartubercartMatch5.x-1.0beta2
OR
ubercartubercartMatch5.x-1.0beta3
OR
ubercartubercartMatch5.x-1.0beta4
OR
ubercartubercartMatch5.x-1.0beta5
OR
ubercartubercartMatch5.x-1.0beta6
OR
ubercartubercartMatch5.x-1.0beta7
OR
ubercartubercartMatch5.x-1.0rc1
OR
ubercartubercartMatch5.x-1.0rc2
OR
ubercartubercartMatch5.x-1.0rc3
OR
ubercartubercartMatch5.x-1.0rc4
OR
ubercartubercartMatch5.x-1.0rc5
OR
ubercartubercartMatch5.x-1.1
OR
ubercartubercartMatch5.x-1.2
OR
ubercartubercartMatch5.x-1.3
OR
ubercartubercartMatch5.x-1.3rc1
OR
ubercartubercartMatch5.x-1.4
OR
ubercartubercartMatch5.x-1.5
OR
ubercartubercartMatch5.x-1.6
OR
ubercartubercartMatch5.x-1.7
OR
ubercartubercartMatch5.x-1.8
OR
ubercartubercartMatch6.x-2.0
OR
ubercartubercartMatch6.x-2.0beta1
OR
ubercartubercartMatch6.x-2.0beta2
OR
ubercartubercartMatch6.x-2.0beta3
OR
ubercartubercartMatch6.x-2.0beta4
OR
ubercartubercartMatch6.x-2.0beta5
OR
ubercartubercartMatch6.x-2.0beta6
OR
ubercartubercartMatch6.x-2.0dev
OR
ubercartubercartMatch6.x-2.0rc1
OR
ubercartubercartMatch6.x-2.0rc2
OR
ubercartubercartMatch6.x-2.0rc3
OR
ubercartubercartMatch6.x-2.0rc4
OR
ubercartubercartMatch6.x-2.0rc5
OR
ubercartubercartMatch6.x-2.0rc6
OR
ubercartubercartMatch6.x-2.0rc7
AND
drupaldrupal

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.2 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

65.8%

Related for CVE-2009-4772