漏洞关键信息 漏洞ID CVE-2012-2702 CVSS评分 CVSS 2.0 Base Score: 6.8 - Access Vector: Network - Access Complexity: Medium - Authentication: None - Confidentiality Impact: Partial - Integrity Impact: Partial - Availability Impact: Partial CVSS 2.0 Temporal Score: 5 - Exploitability: Unproven - Remediation Level: Official Fix - Report Confidence: Confirmed 漏洞描述 通过Uburcart Product Keys模块中的某些功能未经授权访问软件。攻击者可以利用此漏洞绕过安全限制并获得对系统的未经授权访问。 后果 Gain Access 修复措施 参考SA-CONTRIB-2012-076以获取补丁、升级或建议的变通方案信息。 受影响产品 Drurl Uiburcart Product Keys模块for Drupal 6.X-1.0 相关链接 SA-CONTRIB-2012-076 Uburcart Product Keys module for Drupal Web Site SA49169 BlD-53587