Логотип exploitDog
bind:CVE-2022-4109
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4109

Количество 2

Количество 2

nvd логотип

CVE-2022-4109

около 3 лет назад

The Wholesale Market for WooCommerce WordPress plugin before 2.0.0 does not validate user input against path traversal attacks, allowing high privilege users such as admin to download arbitrary logs from the server even when they should not be able to (for example in multisite)

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-qm6m-q7rm-4grf

около 3 лет назад

The Wholesale Market for WooCommerce WordPress plugin before 2.0.0 does not validate user input against path traversal attacks, allowing high privilege users such as admin to download arbitrary logs from the server even when they should not be able to (for example in multisite)

CVSS3: 2.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4109

The Wholesale Market for WooCommerce WordPress plugin before 2.0.0 does not validate user input against path traversal attacks, allowing high privilege users such as admin to download arbitrary logs from the server even when they should not be able to (for example in multisite)

CVSS3: 2.7
0%
Низкий
около 3 лет назад
github логотип
GHSA-qm6m-q7rm-4grf

The Wholesale Market for WooCommerce WordPress plugin before 2.0.0 does not validate user input against path traversal attacks, allowing high privilege users such as admin to download arbitrary logs from the server even when they should not be able to (for example in multisite)

CVSS3: 2.7
0%
Низкий
около 3 лет назад

Уязвимостей на страницу