PT-2024-10047 · WordPress · Woocommerce Product Design

Ghsinfosec

·

Published

2024-10-24

·

Updated

2024-11-01

·

CVE-2024-50509

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Woocommerce Product Design versions 1.0.0 and earlier
Description The issue is related to an improper limitation of a pathname to a restricted directory, also known as a Path Traversal vulnerability. This allows for potential unauthorized access to read, modify, or delete data. The vulnerability can be exploited by a remote attacker.
Recommendations For Woocommerce Product Design versions 1.0.0 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Weakness Enumeration

Related Identifiers

BDU:2025-00185
CVE-2024-50509

Affected Products

Woocommerce Product Design