CVE-2015-3302

Publication date

2017-12-29 22:00:00

Family

mitre

State

PUBLISHED

Description

The TheCartPress eCommerce Shopping Cart (aka The Professional WordPress eCommerce Plugin) plugin for WordPress before 1.3.9.3 allows remote attackers to obtain sensitive order detail information by leveraging a "broken authentication mechanism."