plugin

Wp E Commerce Exporter Vulnerabilities

1 known security issue reported for the Wp E Commerce Exporter WordPress plugin. Most recent disclosed Feb 15, 2016.

1 critical

Running Wp E Commerce Exporter on your site? Check whether your installed version is affected.

Scan your site free

WP e-Commerce – Store Exporter <= 1.6.6 - Missing Authorization

critical

The WP e-Commerce – Store Exporter plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wpsc_get_action() function in versions up to, and including 1.6.6. This makes it possible for unauthenticated attackers to gain access to restricted actions that allow them to update th...

CVSS:
9.8
Affected:
up to 1.6.6
Fixed in:
1.6.7
Disclosed:
Feb 15, 2016

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database