YITH WooCommerce Compare <= 2.0.9 - Unauthenticated PHP Object Injection
2016-11-08 00:00
Yorick Koster,Strategic Overview
StatusPatched in 2.1.0
Affected PluginYITH WooCommerce Compare
Affected Version
<= 2.0.9CVSS8.8High
CVE
N/AVulnerability Overview
The YITH WooCommerce Compare plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.0.9 via deserialization of untrusted input from the 'yith_woocompare_list' cookie. This allows unauthenticated attackers to inject a PHP Object. It has been confirmed that this vulnerability allows attackers to execute arbitrary PHP code.
Technical Analysis
REMEDIATION: Update to version 2.1.0, or a newer patched version --- IDENTIFIER: CWE-502 (Deserialization of Untrusted Data) The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C