CVE-2020-36736: WooCommerce Checkout & Funnel Builder by CartFlows – Create High Converting Stores For WooCommerce <= 1.5.15 - Cross-Site Request Forgery Bypass
The WooCommerce Checkout & Funnel Builder by CartFlows plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.5.15. This is due to missing or incorrect nonce validation on the exportjson, importjson, and statuslogsfile functions. This makes it possible for unauthenticated attackers to import/export settings and trigger logs showing via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-36736?
CVE-2020-36736 is classified as a medium severity vulnerability due to its potential for Cross-Site Request Forgery attacks.
How do I fix CVE-2020-36736?
To fix CVE-2020-36736, update the WooCommerce Checkout & Funnel Builder plugin to version 1.5.16 or higher.
Which versions of the CartFlows plugin are affected by CVE-2020-36736?
CVE-2020-36736 affects versions of the CartFlows plugin up to and including 1.5.15.
What attack vector is associated with CVE-2020-36736?
CVE-2020-36736 is associated with Cross-Site Request Forgery attacks due to improper nonce validation.
Who is the vendor associated with CVE-2020-36736?
The vendor associated with CVE-2020-36736 is CartFlows, specifically for the WooCommerce Checkout & Funnel Builder plugin.