CVE-2023-47694: WordPress Mini Cart Drawer For WooCommerce plugin <= 4.0.0 - Broken Access Control vulnerability
Published Dec 9, 2024
·Updated
Missing Authorization vulnerability in appsbd Mini Cart Drawer For WooCommerce woo-mini-cart-drawer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Mini Cart Drawer For WooCommerce: from n/a through <= 4.0.0.
Affected Software
1 affected component
Appsbd Mini Cart Drawer For WooCommerce<=4.0.0
Remediation
Information
No patched version is available.
Event History
Dec 9, 2024
CVE Published
via MITRE·11:30 AM
Data Sourced
via MITRE·11:30 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-47694?
CVE-2023-47694 is classified as a missing authorization vulnerability that can lead to unauthorized access.
2
How do I fix CVE-2023-47694?
To fix CVE-2023-47694, update the Mini Cart Drawer for WooCommerce plugin to version 4.0.1 or later.
3
What versions are affected by CVE-2023-47694?
CVE-2023-47694 affects Mini Cart Drawer for WooCommerce versions from n/a up to and including 4.0.0.
4
What types of issues does CVE-2023-47694 exploit?
CVE-2023-47694 exploits incorrectly configured access control security levels.
5
Who is affected by CVE-2023-47694?
Users of appsbd Mini Cart Drawer for WooCommerce plugin versions up to 4.0.0 are affected by CVE-2023-47694.