NA

CVE-2022-4395

Published: 30/01/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Membership For WooCommerce WordPress plugin prior to 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as malicious PHP code, and achieve RCE.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wpswings membership for woocommerce

Github Repositories

Mass Auto Exploit CVE-2022-4395 Unauthenticated Arbitrary File Upload

MASS CVE-2022-4395 Usage apt install python3 python3-pip -y pip3 install -r requiretxt python3 mainpy Preview Reference wpscancom/vulnerability/80407ac4-8ce3-4df7-9c41-007b69045c40