Lucene search

K
wpvulndbSimon ScannellWPVDB-ID:AD7F42A7-1FFB-4613-864A-6AE3249D8E10
HistoryOct 11, 2018 - 12:00 a.m.

WooCommerce <= 3.4.5 - Authenticated File Deletion to Privilege Escalation

2018-10-1100:00:00
Simon Scannell
wpscan.com
7

0.001 Low

EPSS

Percentile

34.6%

Attackers in control of a user with the shop manager role can delete certain files on the server and then take over any victim account.

CPENameOperatorVersion
woocommercelt3.4.6

0.001 Low

EPSS

Percentile

34.6%

Related for WPVDB-ID:AD7F42A7-1FFB-4613-864A-6AE3249D8E10