Missing Authorization vulnerability in Arshid WooCommerce Quick View allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WooCommerce Quick View: from n/a through 1.1.1.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3897 | Missing Authorization vulnerability in Arshid WooCommerce Quick View allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WooCommerce Quick View: from n/a through 1.1.1. |
Fixes
Solution
Update the WordPress WooCommerce Quick View wordpress plugin to the latest available version (at least 1.1.3).
Workaround
No workaround given by the vendor.
References
History
Fri, 24 Jan 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in Arshid WooCommerce Quick View allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WooCommerce Quick View: from n/a through 1.1.1. | |
| Title | WordPress WooCommerce Quick View plugin <= 1.1.1 - Sensitive Data Exposure vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-02-12T20:01:17.984Z
Reserved: 2025-01-23T14:52:31.176Z
Link: CVE-2025-24705
No data.
Status : Received
Published: 2025-01-24T18:15:43.840
Modified: 2025-01-24T18:15:43.840
Link: CVE-2025-24705
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD