CVE-2023-28121
critical · 9.8A public exploit / detection template exists
Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates →
An issue in WooCommerce Payments plugin for WordPress (versions 5.6.1 and lower) allows an unauthenticated attacker to send requests on behalf of an elevated user, like administrator. This allows a remote, unauthenticated attacker to gain admin access on a site that has the affected version of the plugin activated.
9.8
CVSS
86.5%
EPSS (exploit prob.)
100th
EPSS percentile
2023-04-12
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-287
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| automattic | woocommerce_payments | >= 4.8.0, < 4.8.2 |
| automattic | woocommerce_payments | >= 5.0.0, < 5.0.4 |
| automattic | woocommerce_payments | >= 5.1.0, < 5.1.3 |
| automattic | woocommerce_payments | >= 5.2.0, < 5.2.2 |
| automattic | woocommerce_payments | >= 5.5.0, < 5.5.2 |
| automattic | woopayments | >= 5.6.0, < 5.6.2 |
| automattic | woopayments | 4.9.0 |
| automattic | woopayments | 5.3.0 |
| automattic | woopayments | 5.4.0 |
Check a specific version with /api/v1/cve/match.
References
- https://developer.woocommerce.com/2023/03/23/critical-vulnerability-detected-in-woocommerce-payments-what-you-need-to-know/
- https://www.rcesecurity.com/2023/07/patch-diffing-cve-2023-28121-to-compromise-a-woocommerce/
- https://developer.woocommerce.com/2023/03/23/critical-vulnerability-detected-in-woocommerce-payments-what-you-need-to-know/
- https://www.rcesecurity.com/2023/07/patch-diffing-cve-2023-28121-to-compromise-a-woocommerce/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2023-28121