Vulnerabilities > CVE-2023-28988 - Unspecified vulnerability in Piwebsolution Add-To-Cart-Direct-Checkout-For-Woocommerce 2.1.44/2.1.48

047910
CVSS 4.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
NONE
network
low complexity
piwebsolution

Summary

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in PI Websolution Direct checkout, Add to cart redirect, Quick purchase button, Buy now button, Quick View button for WooCommerce plugin <= 2.1.48 versions.