ZeroHour

CVE-2019-16251

CVSS 3.1
4.3 medium
EPSS
<1%p59
Published
()
Modified
Description

plugin-fw/lib/yit-plugin-panel-wc.php in the YIT Plugin Framework through 3.3.8 for WordPress allows authenticated options changes.

Vendors
yithemes
Products
yith woocommerce wishlist, yith woocommerce compare, yith woocommerce quick view, yith woocommerce zoom magnifier, yith woocommerce ajax search, yith woocommerce badge management, yith woocommerce brands add-on, yith woocommerce request a quote, yith woocommerce social login, yith woocommerce order tracking, yith woocommerce pdf invoice and shipping list, yith pre-order for woocommerce
Ecosystems
WordPress
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.