CVE-2023-40219
CVSS 3.1 Score 7.2 of 10 (high)
Details
Published Sep 27, 2023
CWE ID 434
Summary
CVE-2023-40219 is a vulnerability affecting Welcart e-Commerce versions 2.7 to 2.8.21. This issue grants users with editor or higher privileges the ability to upload files to unauthorized directories, potentially leading to unintended file executions or unauthorized access to sensitive data. Attackers could exploit this vulnerability to gain further system access or install malware. Administrators are urged to update their Welcart installations to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share