Description
WordPress Plugin Shopping Cart & eCommerce Store is prone to multiple security bypass vulnerabilities. Exploiting these issues may allow attackers to perform otherwise restricted actions and subsequently update any WordPress options. WordPress Plugin Shopping Cart & eCommerce Store version 3.0.20 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.0.22 or latest
References
Related Vulnerabilities
WordPress Plugin Gravity Forms-Clockwork SMS Cross-Site Scripting (2.2)
WebLogic CVE-2008-2579 Vulnerability (CVE-2008-2579)
SharePoint Resource Management Errors Vulnerability (CVE-2015-0064)
WordPress Plugin Ad Inserter-Ad Manager & AdSense Ads Cross-Site Scripting (1.5.5)
WordPress Plugin CYSTEME Finder, the admin files explorer Cross-Site Request Forgery (1.4)