cleantalk

Vulnerabilities and Security Researches

Security reports for smart-manager-for-wp-e-commerce

CVE/PSC Application Date Affected versions Description Details
Actual on: Feb 11, 2025, 01:02:57
Entries count: 4

CVE-2025-22710

Smart Manager – WooCommerce Bulk Edit Products, Orders, Coupons, Any WordPress Post Type (Advanced)

vulnerable

Jan 19, 2025, 22:01:37
Min -
Max 8.53.0
WooCommerce Advanced Bulk Edit Products, Orders, Coupons, Any WordPress Post Type &#8211; Smart Manager [smart-manager-for-wp-e-commerce] < 8.53.0 CVE-2025-22710

CVE-2024-49687

Smart Manager – WooCommerce Bulk Edit Products, Orders, Coupons, Any WordPress Post Type (Advanced)

vulnerable

Oct 24, 2024, 19:10:27
Min -
Max 8.46.0
Missing Authorization vulnerability in StoreApps Smart Manager.This issue affects Smart Manager: from n/a through 8.45.0.

CVE-2024-0566

Smart Manager – WooCommerce Bulk Edit Products, Orders, Coupons, Any WordPress Post Type (Advanced)

vulnerable

Jun 07, 2024, 03:06:31
Min -
Max 8.28.0
The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.

54ee094a291c85ad46e95bf98a3a744d98443fda

Smart Manager – WooCommerce Bulk Edit Products, Orders, Coupons, Any WordPress Post Type (Advanced)

vulnerable

Jun 07, 2024, 03:06:31
Min -
Max 3.9.7
WooCommerce Bulk Edit Products, Orders, Coupons, Any WordPress Post Type (Advanced) &#8211; Smart Manager [smart-manager-for-wp-e-commerce] < 3.9.7 WordPress Smart Manager Plugin <= 3.9.6 - SQL Injection Because of this vulnerability, unauthenticated remote attackers can execute arbitrary SQL commands. Update the plugin.