[Security-news] SA-CONTRIB-2009-107 - Ubercart - Access bypass, Cross site request forgery