Lucene search

K
wpvulndbWpvulndbWPVDB-ID:3E3B262B-0A5B-435C-8EAC-17397BE66383
HistoryOct 11, 2023 - 12:00 a.m.

Woocommerce Category Banner Management < 2.4.3 - Shop Banner Settings Update via CSRF

2023-10-1100:00:00
wpscan.com
5
woocommerce
banner
csrf
attack
shop
settings
update

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

17.9%

Description The plugin does not have CSRF check when updating its Shop Banner settings, which could allow attackers to make logged in admins perform such action via a CSRF attack

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

17.9%

Related for WPVDB-ID:3E3B262B-0A5B-435C-8EAC-17397BE66383