Description
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in this.Functional CTT Expresso para WooCommerce plugin <= 3.2.11 versions.
Published: 2023-03-23
Score: 5.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update to 3.2.12 or a higher version.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-50349 Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in this.Functional CTT Expresso para WooCommerce plugin <= 3.2.11 versions.
History

Fri, 10 Jan 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Thisfunctional Ctt Expresso Para Woocommerce
cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2025-01-10T19:16:54.470Z

Reserved: 2022-12-20T08:12:13.329Z

Link: CVE-2022-47589

cve-icon Vulnrichment

Updated: 2024-08-03T14:55:08.329Z

cve-icon NVD

Status : Modified

Published: 2023-03-23T15:15:11.633

Modified: 2024-11-21T07:32:13.277

Link: CVE-2022-47589

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses