Authenticated IDOR vulnerability in StoreApps Affiliate For WooCommerce premium plugin <= 4.7.0 at WordPress allows an attacker to change the PayPal email. WooCommerce PayPal Payments plugin (free) should be at least installed to get the extra input field on the user profile page.
Metrics
Affected Vendors & Products
References
History
Thu, 20 Feb 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: Patchstack
Published: 2022-08-05T15:08:51.582Z
Updated: 2025-02-20T20:13:40.949Z
Reserved: 2022-07-22T00:00:00.000Z
Link: CVE-2022-36284

Updated: 2024-08-03T10:00:04.224Z

Status : Modified
Published: 2022-08-05T16:15:14.557
Modified: 2025-02-20T21:15:23.537
Link: CVE-2022-36284

No data.