Privilege Escalation Vulnerability in Local Delivery Drivers for WooCommerce
CVE-2023-51481
9.8CRITICAL
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 17 May 2024
What is CVE-2023-51481?
The Local Delivery Drivers for WooCommerce plugin developed by Powerfulwp exhibits an improper privilege management vulnerability. This security flaw allows an attacker to escalate privileges within the application, potentially leading to unauthorized access to sensitive functionalities. The affected versions include all deployments from n/a through 1.9.0, making it imperative for users to apply relevant patches to mitigate any risks associated with this vulnerability.
Affected Version(s)
Local Delivery Drivers for WooCommerce <= 1.9.0