8.8

CVE-2015-2673

Exploit

EasyCart 1.1.30 - 3.0.20 - Privilege Escalation

The ec_ajax_update_option and ec_ajax_clear_all_taxrates functions in inc/admin/admin_ajax_functions.php in the WP EasyCart plugin 1.1.30 through 3.0.20 for WordPress allow remote attackers to gain administrator privileges and execute arbitrary code via the option_name and option_value parameters.
Mögliche Gegenmaßnahme
Shopping Cart & eCommerce Store: Update to version 3.0.21, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
WpeasycartWp Easycart Version1.1.30 SwPlatformwordpress
WpeasycartWp Easycart Version1.1.31 SwPlatformwordpress
WpeasycartWp Easycart Version1.1.32 SwPlatformwordpress
WpeasycartWp Easycart Version1.1.33 SwPlatformwordpress
WpeasycartWp Easycart Version1.1.34 SwPlatformwordpress
WpeasycartWp Easycart Version1.1.35 SwPlatformwordpress
WpeasycartWp Easycart Version1.1.36 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.0 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.1 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.2 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.3 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.4 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.5 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.6 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.7 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.8 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.9 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.10 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.11 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.12 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.13 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.14 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.15 SwPlatformwordpress
WpeasycartWp Easycart Version1.2.16 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.1 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.2 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.3 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.4 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.5 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.6 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.7 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.8 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.9 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.10 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.11 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.12 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.13 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.14 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.15 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.16 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.17 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.18 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.19 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.20 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.21 SwPlatformwordpress
WpeasycartWp Easycart Version2.0.22 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.0 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.1 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.2 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.3 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.4 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.5 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.6 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.7 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.8 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.9 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.10 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.11 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.12 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.13 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.14 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.15 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.16 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.17 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.18 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.19 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.20 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.21 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.22 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.23 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.24 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.25 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.26 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.27 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.28 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.29 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.30 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.31 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.32 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.33 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.34 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.35 SwPlatformwordpress
WpeasycartWp Easycart Version2.1.36 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.0 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.1 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.2 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.3 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.4 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.5 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.6 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.7 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.8 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.9 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.10 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.11 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.12 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.13 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.14 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.15 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.16 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.17 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.18 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.19 SwPlatformwordpress
WpeasycartWp Easycart Version3.0.20 SwPlatformwordpress
Weitere Schwachstelleninformationen
SystemWordPress Plugin
Produkt Shopping Cart & eCommerce Store
Version 1.1.30-3.0.20
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 18.93% 0.969
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://blog.rastating.com/wp-easycart-privilege-escalation-information-disclosure/
Third Party Advisory
Exploit
https://www.wordfence.com/threat-intel/vulnerabilities/id/91c147f9-8179-4ce0-8d17-87ea47cf08fe
Third Party Advisory