CVE-2025-47641: WordPress Printcart Web to Print Product Designer for WooCommerce plugin <= 2.3.9 - Arbitrary File Upload Vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in printcart Printcart Web to Print Product Designer for WooCommerce allows Upload a Web Shell to a Web Server. This issue affects Printcart Web to Print Product Designer for WooCommerce: from n/a through 2.3.8.
Other sources
Unrestricted Upload of File with Dangerous Type vulnerability in printcart Printcart Web to Print Product Designer for WooCommerce printcart-integration allows Upload a Web Shell to a Web Server.This issue affects Printcart Web to Print Product Designer for WooCommerce: from n/a through <= 2.3.9.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47641?
CVE-2025-47641 is classified as a high-severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2025-47641?
To fix CVE-2025-47641, update the Printcart Web to Print Product Designer for WooCommerce plugin to version 2.3.9 or later.
What type of attack does CVE-2025-47641 enable?
CVE-2025-47641 enables attackers to upload a web shell, allowing them to execute arbitrary code on the server.
Which versions of Printcart Web to Print Product Designer for WooCommerce are affected by CVE-2025-47641?
CVE-2025-47641 affects all versions of Printcart Web to Print Product Designer for WooCommerce up to and including version 2.3.8.
Is there a known exploit for CVE-2025-47641?
Yes, there are known exploits that take advantage of the unrestricted file upload vulnerability in CVE-2025-47641.