CVE-2022-4047

Scores

EPSS

0.733medium73.3%
0%20%40%60%80%100%

Percentile: 73.3%

CVSS

9.8critical3.x
0246810

CVSS Score: 9.8/10

All CVSS Scores

CVSS 3.x
9.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

The Return Refund and Exchange For WooCommerce WordPress plugin before 4.0.9 does not validate attachment files to be uploaded via an AJAX action available to unauthenticated users, which could allow them to upload arbitrary files such as PHP and lead to RCE

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

Exploits

Exploit ID: CVE-2022-4047

Source: github-poc

URL: https://github.com/entroychang/CVE-2022-4047

Vulnerable Software (1)

Type: Configuration

Vendor: *

Product: return_refund_and_exchange_for_woocommerce

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:wpswings:return_refund_and_exchange_for_woocommerce:*:*:*:*:*:wordpress:*:*",      "versionEndExcluding": "4.0.9",      "vulnerable": true    }...

Source: nvd

End of list