cleantalk
Vulnerabilities and Security Researches

Welcart e-Commerce, CVE-2020-28339

CVE, Research URL

CVE-2020-28339

Application

Welcart e-Commerce

Published on
Nov 08, 2020
Research Description
The usc-e-shop (aka Collne Welcart e-Commerce) plugin before 1.9.36 for WordPress allows Object Injection because of usces_unserialize. There is not a complete POP chain.
Affected versions
Min -, max 1.9.36.
Status
vulnerable