Lucene search

K
patchstackVille KorhonenPATCHSTACK:12869D6EA5CEEE287990F6F7CB59BACC
HistoryMar 21, 2021 - 12:00 a.m.

WordPress WooCommerce Help Scout plugin <= 2.9 - Unauthenticated Arbitrary File Upload vulnerability leading to Remote Code Execution (RCE)

2021-03-2100:00:00
Ville Korhonen
patchstack.com
5

0.003 Low

EPSS

Percentile

69.6%

Unauthenticated Arbitrary File Upload vulnerability leading to Remote Code Execution (RCE) discovered by Ville Korhonen in WordPress WooCommerce Help Scout plugin (versions <= 2.9).

Solution

           Update the WordPress WooCommerce Help Scout plugin to the latest available version (at least 2.9.1).
CPENameOperatorVersion
woocommerce help scoutle2.9

0.003 Low

EPSS

Percentile

69.6%

Related for PATCHSTACK:12869D6EA5CEEE287990F6F7CB59BACC