Логотип exploitDog
bind:CVE-2022-4108
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4108

Количество 2

Количество 2

nvd логотип

CVE-2022-4108

около 3 лет назад

The Wholesale Market for WooCommerce WordPress plugin before 1.0.8 does not validate user input used to generate system path, allowing high privilege users such as admin to download arbitrary file from the server even when they should not be able to (for example in multisite)

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-fqpq-36q8-xc95

около 3 лет назад

The Wholesale Market for WooCommerce WordPress plugin before 1.0.8 does not validate user input used to generate system path, allowing high privilege users such as admin to download arbitrary file from the server even when they should not be able to (for example in multisite)

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4108

The Wholesale Market for WooCommerce WordPress plugin before 1.0.8 does not validate user input used to generate system path, allowing high privilege users such as admin to download arbitrary file from the server even when they should not be able to (for example in multisite)

CVSS3: 4.9
1%
Низкий
около 3 лет назад
github логотип
GHSA-fqpq-36q8-xc95

The Wholesale Market for WooCommerce WordPress plugin before 1.0.8 does not validate user input used to generate system path, allowing high privilege users such as admin to download arbitrary file from the server even when they should not be able to (for example in multisite)

CVSS3: 4.9
1%
Низкий
около 3 лет назад

Уязвимостей на страницу