Description
WordPress Plugin WP e-Commerce-Store Toolkit is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin WP e-Commerce-Store Toolkit version 2.0.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.2 or latest
References
http://www.pritect.net/blog/visser-labs-wordpress-plugins-multiple-vulnerabilities
https://wordpress.org/plugins/wp-e-commerce-store-toolkit/changelog/
Related Vulnerabilities
WordPress Plugin Content Timeline Multiple SQL Injection Vulnerabilities (4.4.2)
WordPress Plugin Affiliates Manager Cross-Site Request Forgery (2.6.5)
Oracle Application Server CVE-2008-4017 Vulnerability (CVE-2008-4017)
EspoCRM Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-5965)