Missing Authorization vulnerability in Dropshipping Guru Ali2Woo Lite Exploiting Incorrectly Configured Access Control Security Levels, Stored XSS.This issue affects Ali2Woo Lite: from n/a through 3.3.5.
Metrics
Affected Vendors & Products
References
History
Fri, 01 Nov 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 01 Nov 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Missing Authorization vulnerability in Dropshipping Guru Ali2Woo Lite Exploiting Incorrectly Configured Access Control Security Levels, Stored XSS.This issue affects Ali2Woo Lite: from n/a through 3.3.5. | |
Title | WordPress AliExpress Dropshipping with AliNext Lite plugin <= 3.3.5 - Broken Access Control to XSS vulnerability | |
Weaknesses | CWE-862 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Patchstack
Published: 2024-11-01T14:18:32.454Z
Updated: 2024-11-01T15:45:06.195Z
Reserved: 2024-06-04T16:45:55.565Z
Link: CVE-2024-37214
Vulnrichment
Updated: 2024-11-01T15:45:01.603Z
NVD
Status : Awaiting Analysis
Published: 2024-11-01T15:15:20.933
Modified: 2024-11-01T20:24:53.730
Link: CVE-2024-37214
Redhat
No data.