cleantalk
Vulnerabilities and Security Researches

Product Catalog Mode For WooCommerce, 68d9e10d61821cb0f8b203a43b1db4013d5f5732

Published on
Nov 07, 2023
Research Description
CatalogX &#8211; Catalog Mode, Enquiry &amp; Quotes for WooCommerce [woocommerce-catalog-enquiry] < 5.0.3 WordPress Product Catalog Enquiry Plugin < 5.0.3 is vulnerable to Broken Access Control Update the WordPress Product Catalog Enquiry plugin to the latest available version (at least 5.0.3). Unknown discovered and reported this Broken Access Control vulnerability in WordPress Product Catalog Enquiry Plugin. A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action. This vulnerability has been fixed in version 5.0.3.
Affected versions
max 5.0.3.
Status
vulnerable