CVE-2024-13775: WooCommerce Support Ticket System <= 17.8 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Deletion and Information Exposure
The WooCommerce Support Ticket System plugin for WordPress is vulnerable to unauthorized access and loss of data due to missing capability checks on the 'ajaxdeletemessage', 'ajaxgetcustomerspartiallist', and 'ajaxgetadminslist' functions in all versions up to, and including, 17.8. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete arbitrary posts, and read names, emails, and capabilities of all users.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13775?
CVE-2024-13775 is considered a critical vulnerability due to unauthorized access and potential data loss.
How do I fix CVE-2024-13775?
To fix CVE-2024-13775, update the WooCommerce Support Ticket System plugin to the latest version that includes capability checks.
What functions are affected by CVE-2024-13775?
CVE-2024-13775 affects the 'ajax_delete_message', 'ajax_get_customers_partial_list', and 'ajax_get_admins_list' functions.
Which versions of the WooCommerce Support Ticket System are vulnerable to CVE-2024-13775?
All versions of the WooCommerce Support Ticket System plugin up to and including version 17.8 are vulnerable to CVE-2024-13775.
Who is affected by CVE-2024-13775?
Users of the WooCommerce Support Ticket System plugin on WordPress are affected by CVE-2024-13775.