CVE-2024-13692

The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Features plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.4.5 via several functions due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to overwrite linked refund image attachments, overwrite refund request message, overwrite order messages, and read order messages of other users.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wpswings:return_refund_and_exchange_for_woocommerce:*:*:*:*:*:wordpress:*:*

History

25 Feb 2025, 19:40

Type Values Removed Values Added
Summary
  • (es) El complemento Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Features para WordPress es vulnerable a Insecure Direct Object Reference en todas las versiones hasta la 4.4.5 incluida a través de varias funciones debido a la falta de validación en una clave controlada por el usuario. Esto hace posible que atacantes no autenticados sobrescriban los archivos adjuntos de imágenes de reembolso vinculados, sobrescriban el mensaje de solicitud de reembolso, sobrescriban los mensajes de pedido y lean los mensajes de pedido de otros usuarios.
CWE CWE-639
First Time Wpswings return Refund And Exchange For Woocommerce
Wpswings
References () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/common/class-woo-refund-and-exchange-lite-common.php#L127 - () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/common/class-woo-refund-and-exchange-lite-common.php#L127 - Product
References () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/common/class-woo-refund-and-exchange-lite-common.php#L186 - () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/common/class-woo-refund-and-exchange-lite-common.php#L186 - Product
References () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/common/class-woo-refund-and-exchange-lite-common.php#L374 - () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/common/class-woo-refund-and-exchange-lite-common.php#L374 - Product
References () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/public/class-woo-refund-and-exchange-lite-public.php#L381 - () https://plugins.trac.wordpress.org/browser/woo-refund-and-exchange-lite/trunk/public/class-woo-refund-and-exchange-lite-public.php#L381 - Product
References () https://plugins.trac.wordpress.org/changeset/3236486/ - () https://plugins.trac.wordpress.org/changeset/3236486/ - Patch
References () https://www.wordfence.com/threat-intel/vulnerabilities/id/dafbf6e2-1160-4551-a987-5e94c9157ff2?source=cve - () https://www.wordfence.com/threat-intel/vulnerabilities/id/dafbf6e2-1160-4551-a987-5e94c9157ff2?source=cve - Third Party Advisory
CPE cpe:2.3:a:wpswings:return_refund_and_exchange_for_woocommerce:*:*:*:*:*:wordpress:*:*

14 Feb 2025, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-14 06:15

Updated : 2025-02-25 19:40


NVD link : CVE-2024-13692

Mitre link : CVE-2024-13692

CVE.ORG link : CVE-2024-13692


JSON object : View

Products Affected

wpswings

  • return_refund_and_exchange_for_woocommerce
CWE
CWE-285

Improper Authorization

CWE-639

Authorization Bypass Through User-Controlled Key