Vulnerabilities > CVE-2021-24566 - Unspecified vulnerability in Pluginus FOX - Currency Switcher Professional for Woocommerce
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
The WooCommerce Currency Switcher FOX WordPress plugin before 1.3.7 was vulnerable to LFI attacks via the "woocs" shortcode.
Vulnerable Configurations
References
- https://jetpack.com/2021/07/22/severe-vulnerability-patched-in-woocommerce-currency-switcher/
- https://jetpack.com/2021/07/22/severe-vulnerability-patched-in-woocommerce-currency-switcher/
- https://wpscan.com/vulnerability/a0bc4b13-53fe-462d-8306-8915196d3a5a/
- https://wpscan.com/vulnerability/a0bc4b13-53fe-462d-8306-8915196d3a5a/