cleantalk
Vulnerabilities and Security Researches

Welcart e-Commerce, bce540d0938766dd62258d8fccf75dac1c7b49f0

Application

Welcart e-Commerce

Published on
Nov 14, 2023
Research Description
Welcart e-Commerce [usc-e-shop] < 2.9.5 WordPress Welcart e-Commerce Plugin <= 2.9.4 is vulnerable to Arbitrary File Upload Update the WordPress Welcart e-Commerce plugin to the latest available version (at least 2.9.5). WordFence discovered and reported this Arbitrary File Upload vulnerability in WordPress Welcart e-Commerce Plugin. This could allow a malicious actor to upload any type of file to your website. This can include backdoors which are then executed to gain further access to your website. This vulnerability has been fixed in version 2.9.5.
Affected versions
max 2.9.5.
Status
vulnerable