First published: Mon Jan 02 2023(Updated: )
The Welcart e-Commerce WordPress plugin before 2.8.5 does not validate user input before using it to output the content of a file via an AJAX action available to any authenticated users, which could allow users with a role as low as subscriber to read arbitrary files on the server.
Credit: contact@wpscan.com contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
Collne Welcart | <2.8.5 | |
Welcart Plugin | <2.8.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-4236.
The severity of CVE-2022-4236 is medium with a CVSS score of 6.5.
The Welcart e-Commerce WordPress plugin before version 2.8.5 is affected by CVE-2022-4236.
CVE-2022-4236 allows users with a role as low as subscriber to read arbitrary files on the server.
To fix CVE-2022-4236, update the Welcart e-Commerce WordPress plugin to version 2.8.5 or later.