QID 150486
Date Published: 2022-03-16
QID 150486: WordPress Booster for Woocommerce Plugin: Authentication Bypass Vulnerability (CVE-2021-34646)
Booster for WooCommerce is an addon plugin for WooCommerce designed to enhance its functionality through the use of various modules that site owners can enable and disable at any point.
The Booster for WooCommerce WordPress plugin are vulnerable to authentication bypass via the process_email_verification function due to a random token generation weakness in the reset_and_mail_activation_link function found in the ~/includes/class-wcj-emails-verification.php file. This allows attackers to impersonate users and trigger an email address verification for arbitrary accounts, including administrative accounts, and automatically be logged in as that user, including any site administrators.
Affected Versions:
The Booster for WooCommerce WordPress plugin before 5.4.4.
QID Detection Logic:
This QID sends a HTTP GET request and checks for vulnerable version of WordPress plugin running on the target application.
An attacker could exploit this vulnerability to gain administrative access on sites running a vulnerable version of the plugin and effectively take-over the site.
CVEs related to QID 150486
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Booster for WooCommerce |
|