Authenticated IDOR vulnerability in StoreApps Affiliate For WooCommerce premium plugin <= 4.7.0 at WordPress allows an attacker to change the PayPal email. WooCommerce PayPal Payments plugin (free) should be at least installed to get the extra input field on the user profile page.
Metrics
Affected Vendors & Products
References
History
Thu, 20 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2022-08-05T15:08:51.582Z
Updated: 2025-02-20T20:13:40.949Z
Reserved: 2022-07-22T00:00:00.000Z
Link: CVE-2022-36284
Updated: 2024-08-03T10:00:04.224Z
Status : Modified
Published: 2022-08-05T16:15:14.557
Modified: 2025-02-20T21:15:23.537
Link: CVE-2022-36284
No data.
ReportizFlow