What the vulnerability does
01Description
Unauthenticated Sensitive Data Exposure in YITH WooCommerce Zoom Magnifier <= 2.52.0 versions.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
What the vulnerability does
Unauthenticated Sensitive Data Exposure in YITH WooCommerce Zoom Magnifier <= 2.52.0 versions.
Explanation of Vulnerability in Simple Terms
YITH WooCommerce Zoom Magnifier versions up to 2.52.0 expose sensitive system information to unauthorized users. An attacker can read details about the site's configuration or environment without authentication. This information could be used to plan further attacks. Update to a version newer than 2.52.0.
What an attacker can do
Read sensitive system information about the site's configuration or environment.
Potential impact on your site
Site configuration details may be exposed to attackers, potentially aiding reconnaissance for further attacks.
Conditions required to exploit
No authentication or user interaction required; attacker needs only network access to the site.
Key dates
External resources
Related vulnerabilities