CVE-2024-32724 – WordPress SharkDropship and Affiliate for AliExpress, eBay, Amazon, Etsy plugin <= 2.1.1 - Arbitrary Content Deletion vulnerability
https://notcve.org/view.php?id=CVE-2024-32724
22 Apr 2024 — Missing Authorization vulnerability in Woo product importer Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy.This issue affects Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy: from n/a through 2.1.1. Vulnerabilidad de autorización faltante en el dropshipping de Sharkdropship del importador de productos Woo para Aliexpress, eBay, Amazon, etsy. Este problema afecta al dropshipping de Sharkdropship para Aliexpress, eBay, Amazon, etsy: desde n/a hasta 2.1.1. The SharkDropship and Aff... • https://patchstack.com/database/vulnerability/woo-aliexpress-dropshipping/wordpress-sharkdropship-and-affiliate-for-aliexpress-ebay-amazon-etsy-plugin-2-1-1-arbitrary-content-deletion-vulnerability?_s_id=cve • CWE-862: Missing Authorization •
CVE-2023-49848 – WordPress Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy plugin <= 2.1.1 - Broken Access Control vulnerability
https://notcve.org/view.php?id=CVE-2023-49848
06 Dec 2023 — Missing Authorization vulnerability in wooproductimporter Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy: from n/a through 2.1.1. The Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on an unknown function in versions up to, and including,... • https://patchstack.com/database/wordpress/plugin/woo-aliexpress-dropshipping/vulnerability/wordpress-sharkdropship-dropshipping-for-aliexpress-ebay-amazon-etsy-plugin-2-1-1-broken-access-control-vulnerability?_s_id=cve • CWE-862: Missing Authorization •