Easiest Sales Funnel Builder For WordPress & WooCommerce by WPFunnels, 3fac323480c620013050ad9e6a563f7b7ff18c8d
- CVE, Research URL
- Home page URL
-
Security reports for Easiest Sales Funnel Builder For WordPress & WooCommerce by WPFunnels
- Published on
- Jul 11, 2023
- Research Description
- WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell [wpfunnels] < 2.7.16 WordPress Drag & Drop Sales Funnel Builder for WordPress – WPFunnels Plugin < 2.7.16 is vulnerable to Insecure Direct Object References (IDOR) No patched version available. Unknown discovered and reported this Insecure Direct Object References (IDOR) vulnerability in WordPress Drag & Drop Sales Funnel Builder for WordPress – WPFunnels Plugin. An insecure direct object reference vulnerability could allow a malicious actor to bypass authorization, authentication, access sensitive files/folders or interact with the database. This vulnerability has not been known to be fixed yet.
- Affected versions
-
max 2.7.16.
- Status
-
vulnerable