Medium severity5.3NVD Advisory· Published Feb 20, 2025· Updated Jun 17, 2026
CVE-2025-1483
CVE-2025-1483
Description
The LTL Freight Quotes – GlobalTranz Edition plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the engtz_wd_save_dropship AJAX endpoint in all versions up to, and including, 2.3.12. This makes it possible for unauthenticated attackers to update the drop shipping settings.
Affected products
4- enituretechnology/LTL Freight Quotes – GlobalTranz Editionv5Range: 0
- Range: <=2.3.12
- cpe:2.3:a:wwexgroup:ltl_freight_quotes:*:*:*:*:globaltranz:wordpress:*:*Range: <2.3.13
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.