Security Advisory

CVE-2021-24212

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-04-05 18:27:47
Last updated 2024-08-03 19:21:18
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The WooCommerce Help Scout WordPress plugin before 2.9.1 (https://woocommerce.com/products/woocommerce-help-scout/) allows unauthenticated users to upload any files to the site which by default will end up in wp-content/uploads/hstmp.