Description
WordPress Plugin WooCommerce-Store Exporter is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin WooCommerce-Store Exporter version 1.8.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.8.4 or latest
References
http://www.pritect.net/blog/visser-labs-wordpress-plugins-multiple-vulnerabilities
https://wordpress.org/plugins/woocommerce-exporter/changelog/
Related Vulnerabilities
Drupal Core 7.x Security Bypass (7.0 - 7.55)
WordPress Plugin Side Menu Lite-add sticky fixed buttons SQL Injection (2.2.5)
Joomla! Core 1.0.x Multiple Unspecified Vulnerabilities (1.0.0 - 1.0.5)
WordPress Plugin EWWW Image Optimizer Cross-Site Request Forgery (5.8.1)
WordPress 'cat' Parameter SQL Injection Vulnerability (1.5 - 1.5.1.1)