PT-2019-8523 · Woocommerce · Woocommerce-Catalog-Enquiry

Publicado

2019-08-27

·

Atualizado

2019-08-29

·

CVE-2017-18592

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions woocommerce-catalog-enquiry plugin versions prior to 3.1.0
Description The issue is related to an incorrect wp upload directory setting for file uploads in the woocommerce-catalog-enquiry plugin.
Recommendations For versions prior to 3.1.0, update to version 3.1.0 or later to resolve the issue.

Correção

Unrestricted File Upload

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-18592

Produtos afetados

Woocommerce-Catalog-Enquiry