CVE-2022-2382
Product Slider for WooCommerce < 2.5.7 - Subscriber+ Arbitrary Options Deletion
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The Product Slider for WooCommerce WordPress plugin before 2.5.7 has flawed CSRF checks and lack authorisation in some of its AJAX actions, allowing any authenticated users, such as subscriber to call them. One in particular could allow them to delete arbitrary blog options.
El plugin Product Slider for WooCommerce de WordPress versiones anteriores a 2.5.7, presenta comprobaciones de tipo CSRF fallidas y carece de autorización en algunas de sus acciones AJAX, lo que permite a cualquier usuario autenticado, como el suscriptor, llamarlas. Una en particular podría permitirles eliminar opciones arbitrarias del blog.
The Product Slider for WooCommerce plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the spwps_reset_ajax and spwps_get_icons functions called via AJAX actions in versions up to, and including, 2.5.6. This makes it possible for authenticated attackers with minimal permissions, such as a subscriber, to reset arbitrary options and retrieve data.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-07-11 CVE Reserved
- 2022-07-26 CVE Published
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-352: Cross-Site Request Forgery (CSRF)
- CWE-862: Missing Authorization
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://wpscan.com/vulnerability/777d4637-444b-4eda-bc21-95d3a3bf6cd3 | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Shapedplugin Search vendor "Shapedplugin" | Product Slider For Woocommerce Search vendor "Shapedplugin" for product "Product Slider For Woocommerce" | < 2.5.7 Search vendor "Shapedplugin" for product "Product Slider For Woocommerce" and version " < 2.5.7" | wordpress |
Affected
|