CVE-2024-13724 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction plugin for WordPress is vulnerable to unauthorized acc…
Medium CVSS: 4.3

CVE-2024-13724

The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction plugin for WordPress is vulnerable to unauthorized access to functionality in all versions up to, and including, 2.6.2. This makes it possible for unauthenticated attackers to increase their own wallet balance, transfer balances between arbitrary users and initiate transfer requests from other users' wallets.
Vendor
Wpswings
Product
Wallet System For Woocommerce
CWE
CWE-285
Yayın Tarihi
2025-03-04 09:15:10
Güncelleme
2025-03-04 20:50:01
Source Identifier
security@wordfence.com
KEV Date Added
-

Kategoriler

Referanslar