Reflected Cross-Site Scripting Vulnerability in Star CloudPRNT for WooCommerce Plugin by WordPress
CVE-2023-4603
Key Information:
- Vendor
Wordpress
- Vendor
- CVE Published:
- 13 November 2023
What is CVE-2023-4603?
The Star CloudPRNT for WooCommerce plugin for WordPress is susceptible to reflected cross-site scripting due to inadequate input sanitization in the 'printersettings' parameter. This vulnerability allows unauthenticated attackers to inject arbitrary scripts into web pages. If users are lured into clicking on a malicious link, their browsers may execute these scripts, potentially leading to data theft or session hijacking. Users should ensure they are using the latest version of the plugin to protect against these threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Star CloudPRNT for WooCommerce * <= 2.0.3
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved