2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2009-4772" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2010-04-20T14:30:01.443" ,
2024-11-22 11:14:00 +00:00
"lastModified" : "2024-11-21T01:10:25.010" ,
2023-04-24 12:24:31 +02:00
"vulnStatus" : "Modified" ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "Unspecified vulnerability in the PayPal Website Payments Standard functionality in the Ubercart module 5.x before 5.x-1.9 and 6.x before 6.x-2.1 for Drupal, when a custom checkout completion message is enabled, allows attackers to obtain sensitive information via unknown vectors."
} ,
{
"lang" : "es" ,
"value" : "Vulnerabilidad sin especificar en la funcionalidad de \"PayPal Website Payments Standard\" (est\u00e1ndar de pago del sitio PayPal) del m\u00f3dulo Ubercart v5.x anteriores a la v5.x-1.9 y v6.x anteriores a la v6.x-2.1 de Drupal. Cuando se habilita un mensaje modificado de fin de la confirmaci\u00f3n, permite a los atacantes obtener informaci\u00f3n confidencial a trav\u00e9s de vectores de ataque sin especificar."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N" ,
2024-11-22 11:14:00 +00:00
"baseScore" : 4.3 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "NETWORK" ,
"accessComplexity" : "MEDIUM" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
2024-11-22 11:14:00 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 8.6 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5B1506E9-AC3A-4D98-A62F-7B7FDE07352D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha1:*:*:*:*:*:*" ,
"matchCriteriaId" : "36EA60B3-B083-498B-A597-B49B79A0623E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha2:*:*:*:*:*:*" ,
"matchCriteriaId" : "589F977E-C734-4C3F-BCEF-8725578CDC55"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha3:*:*:*:*:*:*" ,
"matchCriteriaId" : "814F24C2-B300-47B6-B9AF-C08CB0780C73"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha4:*:*:*:*:*:*" ,
"matchCriteriaId" : "E532108F-1F14-4878-80B5-4D52A9B0F88C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha5:*:*:*:*:*:*" ,
"matchCriteriaId" : "79B708C2-04A9-41CE-8584-83033CABFDFA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha6:*:*:*:*:*:*" ,
"matchCriteriaId" : "B01F7AB1-E52E-4D4C-969F-B8AA5624502D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha6b:*:*:*:*:*:*" ,
"matchCriteriaId" : "C7B26EB1-D24C-4AC9-8314-2BC7C20E7FC7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha6c:*:*:*:*:*:*" ,
"matchCriteriaId" : "2B852140-F0FB-45AC-BB06-073F39340D52"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha7:*:*:*:*:*:*" ,
"matchCriteriaId" : "EE5C2E2D-F474-4E89-AB72-88EFA3886ADB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha7b:*:*:*:*:*:*" ,
"matchCriteriaId" : "4C978726-355A-4DF0-ABEA-C7CD90953B20"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha7c:*:*:*:*:*:*" ,
"matchCriteriaId" : "EF83D438-C2E5-44E9-A477-48D084EDB8A0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha7d:*:*:*:*:*:*" ,
"matchCriteriaId" : "4381C614-F280-482D-AB87-12B0723BB944"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha7e:*:*:*:*:*:*" ,
"matchCriteriaId" : "CFAAB216-B175-4C53-AA9E-B21674579642"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:alpha8:*:*:*:*:*:*" ,
"matchCriteriaId" : "23C9DAE6-3FD9-4B56-BD47-BACBB2BACB68"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:beta1:*:*:*:*:*:*" ,
"matchCriteriaId" : "957D8BAE-5892-48C1-943C-84AA27C357C8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:beta2:*:*:*:*:*:*" ,
"matchCriteriaId" : "2FC90E73-8D76-430F-99E8-6590453E3223"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:beta3:*:*:*:*:*:*" ,
"matchCriteriaId" : "A3E3AFF8-F9BF-439E-B848-7F090CC0D8FE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:beta4:*:*:*:*:*:*" ,
"matchCriteriaId" : "05199049-F50B-4D24-8F51-B075A01EC38F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:beta5:*:*:*:*:*:*" ,
"matchCriteriaId" : "FBAAD07D-1167-453A-94BD-B7C496BC7BF8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:beta6:*:*:*:*:*:*" ,
"matchCriteriaId" : "D74CA2E7-33CC-4ED0-B23A-3E1C93ADC5AA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:beta7:*:*:*:*:*:*" ,
"matchCriteriaId" : "6D22ABDA-4390-40CB-B033-0FF8427A6D84"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:rc1:*:*:*:*:*:*" ,
"matchCriteriaId" : "976464C9-3468-436C-A04D-9E9558F8DFCD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:rc2:*:*:*:*:*:*" ,
"matchCriteriaId" : "7F25EF22-E4FF-4FE1-9F2C-22A319762821"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:rc3:*:*:*:*:*:*" ,
"matchCriteriaId" : "53AC389E-1FA5-437C-983C-ED203AEE04B5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:rc4:*:*:*:*:*:*" ,
"matchCriteriaId" : "CDCD215A-37E9-4486-B509-D1AA0073B1E3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.0:rc5:*:*:*:*:*:*" ,
"matchCriteriaId" : "D1124B20-DBB0-48DF-A2F4-31C6A83F5B6D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E4CCA391-995C-4BAE-9054-6F23914D7D71"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B6CB6E83-F521-4F88-AF16-434F61474CAA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "97D6CD89-AFE8-43F5-9748-8A0B43241B70"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.3:rc1:*:*:*:*:*:*" ,
"matchCriteriaId" : "DEAEFBB1-6557-4990-AD8D-03440330F36F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "42319013-7B7A-48B6-91E1-DEA1440045E1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DF2B9EEB-AB73-41E5-A175-7D5C8992166D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6B27EE2E-989F-48E6-A5EF-B72BDFF21703"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F6910A11-0B31-4CD2-AAA4-89702D1F1B5D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:5.x-1.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A927F877-546B-4CCD-8ED3-4C4029C8B8D4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EDF7E74D-91D0-49FF-A71A-63B20EFF0E1C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:beta1:*:*:*:*:*:*" ,
"matchCriteriaId" : "B4C87025-FF3C-41B5-B52C-37F796F4973A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:beta2:*:*:*:*:*:*" ,
"matchCriteriaId" : "C1C7385D-617D-4099-B5F3-09A0EDA14133"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:beta3:*:*:*:*:*:*" ,
"matchCriteriaId" : "91D74566-3865-4F58-8509-0FA3A63E7D7D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:beta4:*:*:*:*:*:*" ,
"matchCriteriaId" : "2ED83941-C6B5-4771-8668-1B4DD2D889DD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:beta5:*:*:*:*:*:*" ,
"matchCriteriaId" : "4209AD2B-501C-43BC-AA05-88AF06B87EE5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:beta6:*:*:*:*:*:*" ,
"matchCriteriaId" : "3A7D65E3-98AA-42E4-95B7-7E2505423484"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:dev:*:*:*:*:*:*" ,
"matchCriteriaId" : "B1EC6578-162C-4453-BBBD-71AF61E9B2C1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:rc1:*:*:*:*:*:*" ,
"matchCriteriaId" : "E1FD57E7-11AA-4143-A012-EC616241A190"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:rc2:*:*:*:*:*:*" ,
"matchCriteriaId" : "440346E5-0B77-4F0E-99A7-B68B6B438DC1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:rc3:*:*:*:*:*:*" ,
"matchCriteriaId" : "75BA114E-DA1B-4EFE-B628-4F595AB3EFEB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:rc4:*:*:*:*:*:*" ,
"matchCriteriaId" : "022F1C03-BDB5-457E-AD5B-3BC9B79FB82A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:rc5:*:*:*:*:*:*" ,
"matchCriteriaId" : "C82D96AB-67DF-4002-9BE6-6D0D0BE4CE82"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:rc6:*:*:*:*:*:*" ,
"matchCriteriaId" : "68A7835B-975C-400D-A24A-779A7C8FA8E9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:ubercart:ubercart:6.x-2.0:rc7:*:*:*:*:*:*" ,
"matchCriteriaId" : "B4FBEE67-FF86-4796-9A41-48FE1A84ADA6"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "799CA80B-F3FA-4183-A791-2071A7DA1E54"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://drupal.org/node/636576" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
2024-04-04 08:46:00 +00:00
{
"url" : "http://osvdb.org/60291" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://secunia.com/advisories/37440" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Vendor Advisory"
]
} ,
2023-04-24 12:24:31 +02:00
{
"url" : "http://www.securityfocus.com/bid/37058" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch"
]
} ,
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/54345" ,
"source" : "cve@mitre.org"
2024-11-22 11:14:00 +00:00
} ,
{
"url" : "http://drupal.org/node/636576" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://osvdb.org/60291" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://secunia.com/advisories/37440" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "http://www.securityfocus.com/bid/37058" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch"
]
} ,
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/54345" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2023-04-24 12:24:31 +02:00
}
]
}