TeraWallet – Best WooCommerce Wallet System With Cashback Rewards, Partial Payment, Wallet Refunds <= 1.4.10 - Missing Authorization to Authenticated (Subscriber+) User Email Export

2024-03-07 00:00
Lucio Sá

Strategic Overview

Status
Patched in 1.4.11
Affected PluginWallet for WooCommerce
Affected Version<= 1.4.10
CVSS4.3Medium
CVECVE-2024-1690
View all Wallet for WooCommerce vulnerabilities

Vulnerability Overview

The TeraWallet – Best WooCommerce Wallet System With Cashback Rewards, Partial Payment, Wallet Refunds plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the terawallet_export_user_search() function in all versions up to, and including, 1.4.10. This makes it possible for authenticated attackers, with subscriber-level access and above, to export a list of registered users and their emails.

Technical Analysis

REMEDIATION: Update to version 1.4.11, or a newer patched version --- IDENTIFIER: CWE-862 (Missing Authorization) The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C