PT-2024-36673 · Yulio Aleman Jimenez · Smart Shopify Product

Mika

·

Published

2024-12-31

·

Updated

2024-12-31

·

CVE-2024-56031

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Yulio Aleman Jimenez Smart Shopify Product versions 1.0.2 and earlier
Description The issue is related to a Missing Authorization vulnerability, which allows exploiting incorrectly configured access control security levels. This vulnerability is present in Yulio Aleman Jimenez's Smart Shopify Product, enabling unauthorized access.
Recommendations For versions 1.0.2 and earlier, update to version 1.0.3 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive areas of the Smart Shopify Product until a patch is applied.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-56031

Affected Products

Smart Shopify Product