PT-2024-14197 · Webtoffee · Woocommerce Pdf Invoices

Rafie Muhammad

·

Published

2024-05-17

·

Updated

2025-02-11

·

CVE-2023-51546

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels versions 4.2.1 and earlier
Description The issue is related to Improper Privilege Management, allowing Privilege Escalation in WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels.
Recommendations For versions 4.2.1 and earlier, update to a version later than 4.2.1 to resolve the issue.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2023-51546

Affected Products

Woocommerce Pdf Invoices