CVE-2013-0724
27.05.2014, 14:55
PHP remote file inclusion vulnerability in includes/generate-pdf.php in the WP ecommerce Shop Styling plugin for WordPress before 1.8 allows remote attackers to execute arbitrary PHP code via a URL in the dompdf parameter.
Vendor | Product | Version |
---|---|---|
wpshopstyling | wp-ecommerce-shop-styling | 𝑥 ≤ 1.7 |
wpshopstyling | wp-ecommerce-shop-styling | 1.0 |
wpshopstyling | wp-ecommerce-shop-styling | 1.2 |
wpshopstyling | wp-ecommerce-shop-styling | 1.3 |
wpshopstyling | wp-ecommerce-shop-styling | 1.4 |
wpshopstyling | wp-ecommerce-shop-styling | 1.5 |
wpshopstyling | wp-ecommerce-shop-styling | 1.6 |
𝑥
= Vulnerable software versions
References