The ec_ajax_update_option and ec_ajax_clear_all_taxrates functions in inc/admin/admin_ajax_functions.php in the WP EasyCart plugin 1.1.30 through 3.0.20 for WordPress allow remote attackers to gain administrator privileges and execute arbitrary code via the option_name and option_value parameters.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T05:24:38.401Z
Reserved: 2015-03-23T00:00:00
Link: CVE-2015-2673
No data.
Status : Deferred
Published: 2017-10-06T22:29:00.633
Modified: 2025-04-20T01:37:25.860
Link: CVE-2015-2673
No data.
OpenCVE Enrichment
No data.
Weaknesses