CVE-2023-41796

Authorization Bypass Through User-Controlled Key vulnerability in WP Sunshine Sunshine Photo Cart: Free Client Galleries for Photographers.This issue affects Sunshine Photo Cart: Free Client Galleries for Photographers: from n/a before 3.0.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sunshinephotocart:sunshine_photo_cart:*:*:*:*:*:wordpress:*:*

History

28 Dec 2023, 20:04

Type Values Removed Values Added
CPE cpe:2.3:a:sunshinephotocart:sunshine_photo_cart:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/sunshine-photo-cart/wordpress-sunshine-photo-cart-plugin-2-9-25-order-manipulation-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/sunshine-photo-cart/wordpress-sunshine-photo-cart-plugin-2-9-25-order-manipulation-vulnerability?_s_id=cve - Third Party Advisory
Summary
  • (es) Omisión de autorización a través de una vulnerabilidad de clave controlada por el usuario en WP Sunshine Sunshine Photo Cart: Free Client Galleries for Photographers. Este problema afecta a Sunshine Photo Cart: Free Client Galleries for Photographers: desde n/a antes de 3.0.0.
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : 6.5
First Time Sunshinephotocart
Sunshinephotocart sunshine Photo Cart

20 Dec 2023, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-20 14:15

Updated : 2023-12-28 20:04


NVD link : CVE-2023-41796

Mitre link : CVE-2023-41796

CVE.ORG link : CVE-2023-41796


JSON object : View

Products Affected

sunshinephotocart

  • sunshine_photo_cart
CWE
CWE-639

Authorization Bypass Through User-Controlled Key