Description
WordPress Plugin Conditional Marketing Mailer for WooCommerce is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently install arbitrary plugins. WordPress Plugin Conditional Marketing Mailer for WooCommerce version 1.5.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.5.2 or latest
References
Related Vulnerabilities
WordPress Plugin WordPress Books Gallery Unspecified Vulnerability (4.4.1)
WordPress Improper Authentication Vulnerability (CVE-2022-43504)
WordPress Plugin PowerPack Lite for Beaver Builder Local File Inclusion (1.3.0.3)
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2021-32567)
WordPress Plugin WordPress Landing Pages SQL Injection (1.2.1)