A vulnerability has been found in WooCommerce Sales Timers Plugin up to 1.5.7 on WordPress (E-Commerce Management Software) and classified as problematic. Affected by this vulnerability is the function save_theme
of the file ~/includes/admin/coundown_theme_page.php. Applying a patch is able to eliminate this problem. The bugfix is ready for download at plugins.trac.wordpress.org.
WooCommerce Sales Timers Plugin up to 1.5.7 on WordPress coundown_theme_page.php save_theme cross-site request forgery
- Virtual Patching
- September 29, 2021
- 12:04 am
CVE-2024-52759 : D-LINK DI-8003 16.07.26A1 IP_POSITION_ASP IP BUFFER OVERFLOW
Description D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the ip parameter in the ip_position_asp function. References
CVE-2024-51503 : TREND MICRO DEEP SECURITY UP TO 20.0 OS COMMAND INJECTION
Description A security agent manual scan command injection vulnerability in the Trend Micro Deep Security 20 Agent could allow an
CVE-2024-52360 : IBM CONCERT SOFTWARE 1.0.0/1.0.1/1.0.2/1.0.2.1 SQL INJECTION
Description IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 is vulnerable to SQL injection. A remote attacker could send specially