High severity7.2NVD Advisory· Published Apr 3, 2023· Updated Jun 17, 2026
CVE-2023-1124
CVE-2023-1124
Description
The Shopping Cart & eCommerce Store WordPress plugin before 5.4.3 does not validate HTTP requests, allowing authenticated users with admin privileges to perform LFI attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<5.4.3+ 1 more
- (no CPE)range: <5.4.3
- (no CPE)range: <5.4.3
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/229b93cd-544b-4877-8d9f-e6debda9511cnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.