CVE Vulnerabilities

CVE-2012-2299

Published: Aug 14, 2012 | Modified: Aug 15, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Ubercart module 6.x-2.x before 6.x-2.8 and 7.x-3.x before 7.x-3.1 for Drupal stores passwords for new customers in plaintext during checkout, which allows local users to obtain sensitive information by reading from the database.

Affected Software

Name Vendor Start Version End Version
Ubercart Ubercart 6.x-2.0 (including) 6.x-2.0 (including)
Ubercart Ubercart 6.x-2.0-beta1 (including) 6.x-2.0-beta1 (including)
Ubercart Ubercart 6.x-2.0-beta2 (including) 6.x-2.0-beta2 (including)
Ubercart Ubercart 6.x-2.0-beta3 (including) 6.x-2.0-beta3 (including)
Ubercart Ubercart 6.x-2.0-beta4 (including) 6.x-2.0-beta4 (including)
Ubercart Ubercart 6.x-2.0-beta5 (including) 6.x-2.0-beta5 (including)
Ubercart Ubercart 6.x-2.0-beta6 (including) 6.x-2.0-beta6 (including)
Ubercart Ubercart 6.x-2.0-dev (including) 6.x-2.0-dev (including)
Ubercart Ubercart 6.x-2.0-rc1 (including) 6.x-2.0-rc1 (including)
Ubercart Ubercart 6.x-2.0-rc2 (including) 6.x-2.0-rc2 (including)
Ubercart Ubercart 6.x-2.0-rc3 (including) 6.x-2.0-rc3 (including)
Ubercart Ubercart 6.x-2.0-rc4 (including) 6.x-2.0-rc4 (including)
Ubercart Ubercart 6.x-2.0-rc5 (including) 6.x-2.0-rc5 (including)
Ubercart Ubercart 6.x-2.0-rc6 (including) 6.x-2.0-rc6 (including)
Ubercart Ubercart 6.x-2.0-rc7 (including) 6.x-2.0-rc7 (including)
Ubercart Ubercart 6.x-2.1 (including) 6.x-2.1 (including)
Ubercart Ubercart 6.x-2.2 (including) 6.x-2.2 (including)
Ubercart Ubercart 6.x-2.3 (including) 6.x-2.3 (including)
Ubercart Ubercart 6.x-2.4 (including) 6.x-2.4 (including)
Ubercart Ubercart 6.x-2.6 (including) 6.x-2.6 (including)
Ubercart Ubercart 6.x-2.7 (including) 6.x-2.7 (including)
Ubercart Ubercart 7.x-3.0 (including) 7.x-3.0 (including)
Ubercart Ubercart 7.x-3.0-alpha1 (including) 7.x-3.0-alpha1 (including)
Ubercart Ubercart 7.x-3.0-alpha2 (including) 7.x-3.0-alpha2 (including)
Ubercart Ubercart 7.x-3.0-alpha3 (including) 7.x-3.0-alpha3 (including)
Ubercart Ubercart 7.x-3.0-beta1 (including) 7.x-3.0-beta1 (including)
Ubercart Ubercart 7.x-3.0-beta2 (including) 7.x-3.0-beta2 (including)
Ubercart Ubercart 7.x-3.0-beta3 (including) 7.x-3.0-beta3 (including)
Ubercart Ubercart 7.x-3.0-beta4 (including) 7.x-3.0-beta4 (including)
Ubercart Ubercart 7.x-3.0-dev (including) 7.x-3.0-dev (including)
Ubercart Ubercart 7.x-3.0-rc1 (including) 7.x-3.0-rc1 (including)
Ubercart Ubercart 7.x-3.0-rc2 (including) 7.x-3.0-rc2 (including)
Ubercart Ubercart 7.x-3.0-rc3 (including) 7.x-3.0-rc3 (including)
Ubercart Ubercart 7.x-3.0-rc4 (including) 7.x-3.0-rc4 (including)

References