CVE Published: 17/05/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: Patchstack |
Vendor: WebToffee |
Product: WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels Status : PUBLISHED
CVE-2023-51546 Description
Improper Privilege Management vulnerability in WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels allows Privilege Escalation.This issue affects WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels: from n/a through 4.2.1.
Metrics
CVSS Version: 3.1 |
Base Score: 7.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H