The Ubercart Product Keys module 6.x-1.x before 6.x-1.1 for Drupal does not properly check access for product keys, which allows remote attackers to read all unassigned product keys via certain conditions related to the uid.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2012-06-27T00:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2012-05-14T00:00:00


Link: CVE-2012-2702

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2012-06-27T00:55:02.880

Modified: 2017-08-29T01:31:39.743


Link: CVE-2012-2702

JSON object: View

cve-icon Redhat Information

No data.

CWE