Логотип exploitDog
bind:CVE-2022-4395
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4395

Количество 2

Количество 2

nvd логотип

CVE-2022-4395

около 3 лет назад

The Membership For WooCommerce WordPress plugin before 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as malicious PHP code, and achieve RCE.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-v7vm-v25x-84fh

около 3 лет назад

The Membership For WooCommerce WordPress plugin before 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as malicious PHP code, and achieve RCE.

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4395

The Membership For WooCommerce WordPress plugin before 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as malicious PHP code, and achieve RCE.

CVSS3: 9.8
76%
Высокий
около 3 лет назад
github логотип
GHSA-v7vm-v25x-84fh

The Membership For WooCommerce WordPress plugin before 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as malicious PHP code, and achieve RCE.

CVSS3: 9.8
76%
Высокий
около 3 лет назад

Уязвимостей на страницу