Логотип exploitDog
bind:CVE-2024-6506
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-6506

Количество 2

Количество 2

nvd логотип

CVE-2024-6506

больше 1 года назад

Information exposure vulnerability in the MRW plugin, in its 5.4.3 version, affecting the "mrw_log" functionality. This vulnerability could allow a remote attacker to obtain other customers' order information and access sensitive information such as name and phone number. This vulnerability also allows an attacker to create or overwrite shipping labels.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-9569-j547-qg2x

больше 1 года назад

Information exposure vulnerability in the MRW plugin, in its 5.4.3 version, affecting the "mrw_log" functionality. This vulnerability could allow a remote attacker to obtain other customers' order information and access sensitive information such as name and phone number. This vulnerability also allows an attacker to create or overwrite shipping labels.

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-6506

Information exposure vulnerability in the MRW plugin, in its 5.4.3 version, affecting the "mrw_log" functionality. This vulnerability could allow a remote attacker to obtain other customers' order information and access sensitive information such as name and phone number. This vulnerability also allows an attacker to create or overwrite shipping labels.

CVSS3: 8.2
0%
Низкий
больше 1 года назад
github логотип
GHSA-9569-j547-qg2x

Information exposure vulnerability in the MRW plugin, in its 5.4.3 version, affecting the "mrw_log" functionality. This vulnerability could allow a remote attacker to obtain other customers' order information and access sensitive information such as name and phone number. This vulnerability also allows an attacker to create or overwrite shipping labels.

CVSS3: 8.2
0%
Низкий
больше 1 года назад

Уязвимостей на страницу