CVE-2022-4395
30.01.2023, 21:15
The Membership For WooCommerce WordPress plugin before 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as malicious PHP code, and achieve RCE.Enginsight
| Vendor | Product | Version |
|---|---|---|
| wpswings | membership_for_woocommerce | 𝑥 < 2.1.7 |
𝑥
= Vulnerable software versions