Missing Authorization vulnerability in Etoile Web Design Order Tracking allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Order Tracking: from n/a through 3.3.12.
References
Configurations
History
13 Nov 2024, 01:24
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
| First Time |
Etoilewebdesign order Tracking
Etoilewebdesign |
|
| Summary |
|
|
| References | () https://patchstack.com/database/vulnerability/order-tracking/wordpress-order-tracking-wordpress-status-tracking-plugin-plugin-3-3-13-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory | |
| CPE | cpe:2.3:a:etoilewebdesign:order_tracking:*:*:*:*:*:wordpress:*:* |
01 Nov 2024, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-11-01 15:15
Updated : 2024-11-13 01:24
NVD link : CVE-2024-43343
Mitre link : CVE-2024-43343
CVE.ORG link : CVE-2024-43343
JSON object : View
Products Affected
etoilewebdesign
- order_tracking
CWE
CWE-862
Missing Authorization
