WooCommerce Payments 4.8.0 - 5.6.1 Authentication Bypass and Privilege Escalation

2023-03-23 00:00
mikemyers

Strategic Overview

Status
Patched in 5.6.2
Affected Version4.8.0 – 5.6.1
CVSS9.8Critical
CVECVE-2023-28121
View all WooPayments: Integrated WooCommerce Payments vulnerabilities

Vulnerability Overview

The WooCommerce Payments plugin is vulnerable to authentication bypass via the determine_current_user_for_platform_checkout function. This allows unauthenticated attackers to impersonate arbitrary users and perform some actions as the impersonated user, which can lead to site takeover.

Technical Analysis

REMEDIATION: Update to version 5.6.2, or a newer patched version --- IDENTIFIER: CWE-288 (Authentication Bypass Using an Alternate Path or Channel) The product requires authentication, but the product has an alternate path or channel that does not require authentication.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C