Ready! Ecommerce Shopping Cart < 0.5.1 - Cross-Site Request Forgery and Cross-Site Scripting
medium
The Ready! Ecommerce Shopping Cart plugin for WordPress is vulnerable to Cross-Site Request Forgery and Cross-Site Scripting in versions before 0.5.1. This is due to missing or incorrect nonce validation on several functions. This makes it possible for unauthenticated attackers to make unauthorized AJAX calls to perfor...
- CVSS:
- 6.1
- Affected:
- up to 0.5.1
- Fixed in:
- 0.5.1
- Disclosed:
- Sep 17, 2014
Ready! Ecommerce Shopping Cart [ready-ecommerce] < 0.5.1 (closed)
unknown
This plugin is prone to a cross site scripting and cross site request forgery vulnerabilities.
Update the plugin.
- Affected:
- up to 0.5.1
- Fixed in:
- 0.5.1
- Disclosed:
- Sep 17, 2014
Ready! Ecommerce Shopping Cart [ready-ecommerce] < 0.5.1
unknown
The Ready! Ecommerce Shopping Cart plugin for WordPress is vulnerable to Cross-Site Request Forgery and Cross-Site Scripting in versions before 0.5.1. This is due to missing or incorrect nonce validation on several functions. This makes it possible for unauthenticated attackers to make unauthorized AJAX calls to perfor...
- Affected:
- up to 0.5.1
- Fixed in:
- 0.5.1
- Disclosed:
- Sep 17, 2014
Ready! Ecommerce Shopping Cart [ready-ecommerce] < 0.5.1 (closed)
unknown
The ready-ecommerce WordPress plugin was affected by a CSRF & XSS security vulnerability.
- Affected:
- up to 0.5.1
- Fixed in:
- 0.5.1
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database