Input validation vulnerability in Plugin Oficial – Getnet para WooCommerce 1.7.3

The Getnet plugin for WordPress, called “Plugin Oficial”, has a security issue that allows hackers to inject harmful web scripts into certain pages. This can happen when an administrator changes the plugin’s settings. This vulnerability affects versions up to 1.7.3 and can only be exploited by authenticated attackers with high-level permissions. However, it only affects websites with multiple installations and those that have disabled a certain security feature.

Detected in:

Plugin Oficial – Getnet para WooCommerce open vulnerable versions: >= * <= 1.8.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.