Description
WordPress Plugin WP e-Commerce-Store Toolkit is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin WP e-Commerce-Store Toolkit version 2.0.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.2 or latest
References
http://www.pritect.net/blog/visser-labs-wordpress-plugins-multiple-vulnerabilities
https://wordpress.org/plugins/wp-e-commerce-store-toolkit/changelog/
Related Vulnerabilities
WordPress Plugin Omni Secure Files 'upload.php' Arbitrary File Upload (0.1.13)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2987)
Internet Information Services Other Vulnerability (CVE-2006-0026)
SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2022-22005)