01642 06 11 11 Arrange Call

LFI Vulnerability in Shopping Cart & eCommerce Store WordPress Plugin

CVE-2023-1124 · HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CVE-2023-1124

The Shopping Cart & eCommerce Store WordPress plugin before 5.4.3 does not validate HTTP requests, allowing authenticated users with admin privileges to perform LFI attacks.

Learn more about our Wordpress Pen Testing.