CVE

Id
55543  
CVE No.
CVE-2012-2300  
Status
Candidate  
Description
Multiple cross-site scripting (XSS) vulnerabilities in the Ubercart module 6.x-2.x before 6.x-2.8 and 7.x-3.x before 7.x-3.1 for Drupal allow remote authenticated users with the administer product classes permission to inject arbitrary web script or HTML via unspecified vectors.  
Phase
Assigned (20120419)  
Votes
None (candidate not yet proposed)  
Comments