Booster for WooCommerce <= 7.1.1 - Authenticated (Subscriber+) Information Disclosure via Shortcode
2023-10-04 00:00
Dave JongStrategic Overview
StatusPatched in 7.1.2
Affected PluginBooster for WooCommerce – PDF Invoices, Abandoned Cart, Variation Swatches & 100+ Tools
Affected Version
<= 7.1.1CVSS4.3Medium
CVE
CVE-2023-40002Vulnerability Overview
The Booster for WooCommerce for WordPress is vulnerable to Information Disclosure via the 'wcj_get_option' shortcode in versions up to, and including, 7.1.1 due to insufficient controls on the information retrievable via the shortcode. This makes it possible for authenticated attackers, with subscriber-level capabilities or above, to retrieve arbitrary sensitive site options.
Technical Analysis
REMEDIATION: Update to version 7.1.2, or a newer patched version --- IDENTIFIER: CWE-200 (Exposure of Sensitive Information to an Unauthorized Actor) The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C