Логотип exploitDog
bind:CVE-2022-3537
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3537

Количество 2

Количество 2

nvd логотип

CVE-2022-3537

больше 3 лет назад

The Role Based Pricing for WooCommerce WordPress plugin before 1.6.2 does not have authorisation and proper CSRF checks, and does not validate files to be uploaded, allowing any authenticated users like subscriber to upload arbitrary files, such as PHP

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-wxff-8g4p-xj2g

больше 3 лет назад

The Role Based Pricing for WooCommerce WordPress plugin before 1.6.2 does not have authorisation and proper CSRF checks, and does not validate files to be uploaded, allowing any authenticated users like subscriber to upload arbitrary files, such as PHP

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-3537

The Role Based Pricing for WooCommerce WordPress plugin before 1.6.2 does not have authorisation and proper CSRF checks, and does not validate files to be uploaded, allowing any authenticated users like subscriber to upload arbitrary files, such as PHP

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-wxff-8g4p-xj2g

The Role Based Pricing for WooCommerce WordPress plugin before 1.6.2 does not have authorisation and proper CSRF checks, and does not validate files to be uploaded, allowing any authenticated users like subscriber to upload arbitrary files, such as PHP

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу