PT-2024-24812 · Unknown · Sharkdropship

Emili Castells

·

Published

2024-05-09

·

Updated

2024-05-18

·

CVE-2024-32724

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy versions through 2.1.1
Description The issue is related to a Missing Authorization vulnerability in the Woo product importer. This vulnerability affects the Sharkdropship dropshipping plugin for various e-commerce platforms.
Recommendations For versions through 2.1.1, update to a version later than 2.1.1 to resolve the issue. At the moment, there is no information about additional mitigation measures.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-32724

Affected Products

Sharkdropship