Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1
Critical0
High0
Medium1
Reset
Showing 1-1 of 1 records
Threat Entry Updated 2024-12-24

CVE-2024-12266 - Elex Woocommerce Dynamic Pricing And Discounts Plugin

The ELEX WooCommerce Dynamic Pricing and Discounts plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the elex_dp_export_rules() and elex_dp_import_rules() functions in all versions up to, and including, 2.1.7. This makes it possible for unauthenticated attackers to import and export product rules along with obtaining phpinfo() data

PLUGIN Elex Woocommerce Dynamic Pricing And Discounts

CVE-2024-12266

MEDIUM CVSS 6.5 2024-12-24
Scroll to top