CVE-2024-10626: WooCommerce Support Ticket System <= 17.7 - Authenticated (Subscriber+) Arbitrary File Deletion
The WooCommerce Support Ticket System plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the deleteuploadedfile() function in all versions up to, and including, 17.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10626?
CVE-2024-10626 is considered a high severity vulnerability due to its potential for arbitrary file deletion.
How do I fix CVE-2024-10626?
To fix CVE-2024-10626, update the WooCommerce Support Ticket System plugin to version 17.8 or higher.
Who is impacted by CVE-2024-10626?
All users of the WooCommerce Support Ticket System plugin for WordPress using versions up to and including 17.7 are impacted by CVE-2024-10626.
What type of vulnerability is CVE-2024-10626?
CVE-2024-10626 is a vulnerability that allows for arbitrary file deletion due to insufficient file path validation.
What versions of the WooCommerce Support Ticket System are affected by CVE-2024-10626?
CVE-2024-10626 affects all versions of the WooCommerce Support Ticket System plugin up to and including 17.7.