CVE-2022-45359: WordPress YITH WooCommerce Gift Cards Premium Plugin <= 3.19.0 is vulnerable to Arbitrary File Upload
Published Dec 6, 2022
·Updated
Unauth. Arbitrary File Upload vulnerability in YITH WooCommerce Gift Cards premium plugin <= 3.19.0 on WordPress.
Affected Software
1 affected component
YITHEMES Yith Woocommerce Gift Cards Wordpress<=3.19.0
Remediation
Information
Update to 3.20.0 or higher version.
Event History
Dec 6, 2022
CVE Published
via MITRE·08:36 PM
Data Sourced
via MITRE·08:36 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-45359.
2
What is the severity of CVE-2022-45359?
The severity of CVE-2022-45359 is critical.
3
What is the affected software for CVE-2022-45359?
The affected software for CVE-2022-45359 is YITH WooCommerce Gift Cards premium plugin <= 3.19.0 on WordPress.
4
What is the CWE category for CVE-2022-45359?
The CWE category for CVE-2022-45359 is CWE-434.
5
Is there a patch available for CVE-2022-45359?
Yes, a patch is available for CVE-2022-45359. You can find more information about the patch at the following link: https://patchstack.com/database/vulnerability/yith-woocommerce-gift-cards-premium/wordpress-yith-woocommerce-gift-cards-premium-plugin-3-19-0-unauth-arbitrary-file-upload-vulnerability?_s_id=cve