Description
WordPress Plugin WP e-Commerce-Store Exporter is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin WP e-Commerce-Store Exporter version 1.6.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.6.7 or latest
References
http://www.pritect.net/blog/visser-labs-wordpress-plugins-multiple-vulnerabilities
https://wordpress.org/plugins/wp-e-commerce-exporter/changelog/
Related Vulnerabilities
ownCloud Improper Input Validation Vulnerability (CVE-2013-1939)
WordPress Plugin AGP Font Awesome Collection Cross-Site Scripting (2.7.2)
WordPress Plugin Booster for WooCommerce Multiple Cross-Site Request Forgery Vulnerabilities (6.0.0)
WordPress Plugin WP Activity Log Cross-Site Scripting (2.4.3)