PoC Index

CVE-2021-24169

MEDIUM 6.1EPSS 10.3%

This Advanced Order Export For WooCommerce WordPress plugin before 3.1.8 helps you to easily export WooCommerce order data. The tab parameter in the Admin Panel is vulnerable to reflected XSS.

CVSS v3.1
6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS v2.0
4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
EPSS
10.35% chance of exploitation in the next 30 days, 95th percentile
Nuclei
medium · CWE-79
Published
2021-04-05
Updated
2024-08-03

Proof-of-concept exploits (2)

Nuclei templates (1)

ExploitDB entries (1)

References

Related