cleantalk
Vulnerabilities and Security Researches

Welcart e-Commerce, 57720a7490e3e8957f19219a0fa8a75666525ee2

Application

Welcart e-Commerce

Published on
Nov 14, 2023
Research Description
Welcart e-Commerce [usc-e-shop] < 2.9.5 Welcart e-Commerce <= 2.9.4 - Authenticated (Subscriber+) Arbitrary File Upload The Welcart e-Commerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the upload_certificate_file function in all versions up to, and including, 2.9.4. This makes it possible for subscribers or higher to upload arbitrary files on the affected site's server which may make remote code execution possible.
Affected versions
max 2.9.5.
Status
vulnerable