4.3

CVE-2019-16251

plugin-fw/lib/yit-plugin-panel-wc.php in the YIT Plugin Framework through 3.3.8 for WordPress allows authenticated options changes.

Data is provided by the National Vulnerability Database (NVD)
YithemesYith Woocommerce Wishlist SwPlatformwordpress Version <= 2.2.13
YithemesYith Woocommerce Compare SwPlatformwordpress Version <= 2.3.13
YithemesYith Woocommerce Quick View SwPlatformwordpress Version <= 1.3.13
YithemesYith Woocommerce Zoom Magnifier SwPlatformwordpress Version <= 1.3.11
YithemesYith Woocommerce Ajax Search SwPlatformwordpress Version <= 1.6.9
YithemesYith Woocommerce Badge Management SwPlatformwordpress Version <= 1.3.19
YithemesYith Woocommerce Brands Add-on SwPlatformwordpress Version <= 1.3.6
YithemesYith Woocommerce Request A Quote SwPlatformwordpress Version <= 1.4.7
YithemesYith Woocommerce Social Login SwPlatformwordpress Version <= 1.3.4
YithemesYith Woocommerce Order Tracking SwPlatformwordpress Version <= 1.2.10
YithemesYith Woocommerce Pdf Invoice And Shipping List SwPlatformwordpress Version <= 1.2.12
YithemesYith Pre-order For Woocommerce SwPlatformwordpress Version <= 1.1.9
YithemesYith Woocommerce Advanced Reviews SwPlatformwordpress Version <= 1.3.9
YithemesYith Woocommerce Product Add-ons SwPlatformwordpress Version <= 1.5.21
YithemesYith Woocommerce Gift Cards SwPlatformwordpress Version <= 1.3.7
YithemesYith Woocommerce Subscription SwPlatformwordpress Version <= 1.3.4
YithemesYith Woocommerce Affiliates SwPlatformwordpress Version <= 1.6.3
YithemesYith Woocommerce Cart Messages SwPlatformwordpress Version <= 1.4.3
YithemesYith Woocommerce Product Bundles SwPlatformwordpress Version <= 1.1.15
YithemesYith Woocommerce Frequently Bought Together SwPlatformwordpress Version <= 1.2.10
YithemesYith Woocommerce Multi-step Checkout SwPlatformwordpress Version <= 1.7.4
YithemesYith Color And Label Variations For Woocommerce SwPlatformwordpress Version <= 1.8.11
YithemesYith Custom Thank You Page For Woocommerce SwPlatformwordpress Version <= 1.1.6
YithemesYith Product Size Charts For Woocommerce SwPlatformwordpress Version <= 1.1.1
YithemesYith Woocommerce Added To Cart Popup SwPlatformwordpress Version <= 1.3.11
YithemesYith Woocommerce Bulk Product Editing SwPlatformwordpress Version <= 1.2.13
YithemesYith Woocommerce Stripe SwPlatformwordpress Version <= 2.0.1
YithemesYith Woocommerce Waiting List SwPlatformwordpress Version <= 1.3.9
YithemesYith Woocommerce Points And Rewards SwPlatformwordpress Version <= 1.3.4
YithemesYith Advanced Refund System For Woocommerce SwPlatformwordpress Version <= 1.0.10
YithemesYith Woocommerce Authorize.Net Payment Gateway SwPlatformwordpress Version <= 1.1.12
YithemesYith Woocommerce Best Sellers SwPlatformwordpress Version <= 1.1.11
YithemesYith Woocommerce Mailchimp SwPlatformwordpress Version <= 2.1.3
YithemesYith Woocommerce Multi Vendor SwPlatformwordpress Version <= 3.4.0
YithemesYith Woocommerce Questions And Answers SwPlatformwordpress Version <= 1.1.9
YithemesYith Woocommerce Recover Abandoned Cart SwPlatformwordpress Version <= 1.3.2
YithemesYith Paypal Express Checkout For Woocommerce SwPlatformwordpress Version <= 1.2.5
YithemesYith Desktop Notifications For Woocommerce SwPlatformwordpress Version <= 1.2.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.51% 0.634
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:P/A:N