Lucene search

K
nvd[email protected]NVD:CVE-2024-35662
HistoryJun 09, 2024 - 7:15 p.m.

CVE-2024-35662

2024-06-0919:15:51
CWE-862
web.nvd.nist.gov
13
cve-2024-35662
andreas sofantzis
authorization
woocommerce

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

19.3%

Missing Authorization vulnerability in Andreas Sofantzis Simple COD Fees for WooCommerce.This issue affects Simple COD Fees for WooCommerce: from n/a through 2.0.2.

Affected configurations

Nvd
Node
83pixelsimple_cod_fees_for_woocommerceRange2.0.2wordpress
VendorProductVersionCPE
83pixelsimple_cod_fees_for_woocommerce*cpe:2.3:a:83pixel:simple_cod_fees_for_woocommerce:*:*:*:*:*:wordpress:*:*

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

19.3%

Related for NVD:CVE-2024-35662