This Advanced Order Export For WooCommerce WordPress plugin before 3.1.8 helps you to easily export WooCommerce order data. The tab parameter in the Admin Panel is vulnerable to reflected XSS.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/09681a6c-57b8-4448-982a-fe8d28c87fc3 | Exploit Third Party Advisory |
http://packetstormsecurity.com/files/164263/WordPress-Advanced-Order-Export-For-WooCommerce-3.1.7-Cross-Site-Scripting.html | Exploit Third Party Advisory VDB Entry |
Configurations
Information
Published : 2021-04-05 12:15
Updated : 2021-12-03 10:27
NVD link : CVE-2021-24169
Mitre link : CVE-2021-24169
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
algolplus
- advanced_order_export