Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-8401 | Missing Authorization vulnerability in WPClever WPC Smart Upsell Funnel for WooCommerce allows Privilege Escalation. This issue affects WPC Smart Upsell Funnel for WooCommerce: from n/a through 3.0.4. |
Solution
Update the WordPress WPC Smart Upsell Funnel for WooCommerce plugin to the latest available version (at least 3.0.5).
Workaround
No workaround given by the vendor.
Thu, 27 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 27 Mar 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in WPClever WPC Smart Upsell Funnel for WooCommerce allows Privilege Escalation. This issue affects WPC Smart Upsell Funnel for WooCommerce: from n/a through 3.0.4. | |
| Title | WordPress WPC Smart Upsell Funnel for WooCommerce plugin <= 3.0.4 - Arbitrary Option Update to Privilege Escalation vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-03-27T18:56:30.711Z
Reserved: 2025-03-26T09:19:49.549Z
Link: CVE-2025-30772
Updated: 2025-03-27T13:59:08.350Z
Status : Awaiting Analysis
Published: 2025-03-27T11:15:38.397
Modified: 2025-03-27T16:45:27.850
Link: CVE-2025-30772
No data.
OpenCVE Enrichment
No data.
EUVD