Missing Authorization in UkrSolution Print Barcode Labels for WooCommerce
CVE-2025-24603
4.3MEDIUM
Key Information:
- Vendor
- Ukrsolution
- Status
- Print Barcode Labels For Your WooCommerce Products/orders
- Vendor
- CVE Published:
- 27 January 2025
Summary
The UkrSolution Print Barcode Labels for WooCommerce contains a significant missing authorization vulnerability that could allow unauthorized users to access sensitive functionalities of the plugin. This issue affects versions from n/a through 3.4.10, enabling potential exploitation in environments where proper access checks are not enforced. Malicious actors can potentially manipulate or retrieve sensitive data associated with WooCommerce orders and products. Addressing this vulnerability promptly is essential to maintain the integrity and security of e-commerce operations.
Affected Version(s)
Print Barcode Labels for your WooCommerce products/orders <= 3.4.10
References
CVSS V3.1
Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Trương Hữu Phúc (truonghuuphuc) (Patchstack Alliance)