Lucene search

K
cvelistRedhatCVELIST:CVE-2012-2300
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-2300

2022-10-0316:15:36
redhat
www.cve.org
xss
ubercart
drupal
remote authenticated users
inject
arbitrary web script
html
unspecified vectors

5.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

42.4%

Multiple cross-site scripting (XSS) vulnerabilities in the Ubercart module 6.x-2.x before 6.x-2.8 and 7.x-3.x before 7.x-3.1 for Drupal allow remote authenticated users with the administer product classes permission to inject arbitrary web script or HTML via unspecified vectors.

5.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

42.4%

Related for CVELIST:CVE-2012-2300