Show plain JSON{"id": "CVE-2025-3530", "cveTags": [], "metrics": {"cvssMetricV31": [{"type": "Primary", "source": "security@wordfence.com", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.5, "attackVector": "NETWORK", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "NONE"}, "impactScore": 3.6, "exploitabilityScore": 3.9}]}, "published": "2025-04-23T08:15:14.723", "references": [{"url": "https://plugins.trac.wordpress.org/browser/wordpress-simple-paypal-shopping-cart/tags/5.1.2/wp_shopping_cart.php#L156", "source": "security@wordfence.com"}, {"url": "https://plugins.trac.wordpress.org/browser/wordpress-simple-paypal-shopping-cart/tags/5.1.2/wp_shopping_cart.php#L165", "source": "security@wordfence.com"}, {"url": "https://plugins.trac.wordpress.org/browser/wordpress-simple-paypal-shopping-cart/tags/5.1.2/wp_shopping_cart.php#L171", "source": "security@wordfence.com"}, {"url": "https://plugins.trac.wordpress.org/browser/wordpress-simple-paypal-shopping-cart/tags/5.1.2/wp_shopping_cart.php#L261", "source": "security@wordfence.com"}, {"url": "https://plugins.trac.wordpress.org/changeset/3275373/", "source": "security@wordfence.com"}, {"url": "https://www.tipsandtricks-hq.com/wordpress-simple-paypal-shopping-cart-plugin-768", "source": "security@wordfence.com"}, {"url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e0a3910b-adc4-4633-a6a1-32ba50894be4?source=cve", "source": "security@wordfence.com"}], "vulnStatus": "Awaiting Analysis", "weaknesses": [{"type": "Primary", "source": "security@wordfence.com", "description": [{"lang": "en", "value": "CWE-472"}]}], "descriptions": [{"lang": "en", "value": "The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to product price manipulation in all versions up to, and including, 5.1.2. This is due to a logic flaw involving the inconsistent use of parameters during the cart addition process. The plugin uses the parameter 'product_tmp_two' for computing a security hash against price tampering while using 'wspsc_product' to display the product, allowing an unauthenticated attacker to substitute details from a cheaper product and bypass payment for a more expensive item."}, {"lang": "es", "value": "El complemento WordPress Simple Shopping Cart para WordPress es vulnerable a la manipulaci\u00f3n de precios de productos en todas las versiones hasta la 5.1.2 incluida. Esto se debe a una falla l\u00f3gica relacionada con el uso inconsistente de par\u00e1metros durante el proceso de a\u00f1adir al carrito. El complemento utiliza el par\u00e1metro 'product_tmp_two' para calcular un hash de seguridad contra la manipulaci\u00f3n de precios mientras usa 'wspsc_product' para mostrar el producto, lo que permite a un atacante no autenticado sustituir los datos de un producto m\u00e1s econ\u00f3mico y omitir el pago por uno m\u00e1s caro."}], "lastModified": "2025-04-23T14:08:13.383", "sourceIdentifier": "security@wordfence.com"}