Логотип exploitDog
bind:CVE-2022-1953
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-1953

Количество 2

Количество 2

nvd логотип

CVE-2022-1953

больше 3 лет назад

The Product Configurator for WooCommerce WordPress plugin before 1.2.32 suffers from an arbitrary file deletion vulnerability via an AJAX action, accessible to unauthenticated users, which accepts user input that is being used in a path and passed to unlink() without validation first

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-6qhx-qfq2-78g9

больше 3 лет назад

The Product Configurator for WooCommerce WordPress plugin before 1.2.32 suffers from an arbitrary file deletion vulnerability via an AJAX action, accessible to unauthenticated users, which accepts user input that is being used in a path and passed to unlink() without validation first

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-1953

The Product Configurator for WooCommerce WordPress plugin before 1.2.32 suffers from an arbitrary file deletion vulnerability via an AJAX action, accessible to unauthenticated users, which accepts user input that is being used in a path and passed to unlink() without validation first

CVSS3: 9.1
4%
Низкий
больше 3 лет назад
github логотип
GHSA-6qhx-qfq2-78g9

The Product Configurator for WooCommerce WordPress plugin before 1.2.32 suffers from an arbitrary file deletion vulnerability via an AJAX action, accessible to unauthenticated users, which accepts user input that is being used in a path and passed to unlink() without validation first

CVSS3: 9.1
4%
Низкий
больше 3 лет назад

Уязвимостей на страницу