Unrestricted Upload of File with Dangerous Type vulnerability in WebToffee Order Export & Order Import for WooCommerce.This issue affects Order Export & Order Import for WooCommerce: from n/a through 2.4.3.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:55
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.0 |
References | () https://patchstack.com/database/vulnerability/order-import-export-for-woocommerce/wordpress-order-export-order-import-for-woocommerce-plugin-2-4-3-arbitrary-file-upload-vulnerability?_s_id=cve - Third Party Advisory |
30 Jan 2024, 17:34
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:webtoffee:order_export_\&_order_import_for_woocommerce:*:*:*:*:*:wordpress:*:* | |
References | () https://patchstack.com/database/vulnerability/order-import-export-for-woocommerce/wordpress-order-export-order-import-for-woocommerce-plugin-2-4-3-arbitrary-file-upload-vulnerability?_s_id=cve - Third Party Advisory | |
First Time |
Webtoffee order Export \& Order Import For Woocommerce
Webtoffee |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.2 |
24 Jan 2024, 12:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-24 12:15
Updated : 2024-11-21 08:55
NVD link : CVE-2024-22135
Mitre link : CVE-2024-22135
CVE.ORG link : CVE-2024-22135
JSON object : View
Products Affected
webtoffee
- order_export_\&_order_import_for_woocommerce
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type