PayPal Brasil para WooCommerce Vulnerable to Missing Authorization Attack
CVE-2023-25026
4.3MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 9 December 2024
What is CVE-2023-25026?
A missing authorization issue in PayPal Brasil para WooCommerce may allow unauthorized access due to incorrectly configured access control security levels. This vulnerability impacts versions of the plugin from n/a through 1.4.2, posing a risk to e-commerce platforms using this solution. When exploited, the vulnerability could enable attackers to manipulate or access sensitive information, highlighting the importance of maintaining proper security configurations to safeguard online transactions.
Affected Version(s)
PayPal Brasil para WooCommerce <= 1.4.2