Vulnerability Bulletins

Critical Vulnerability Patched in WooCommerce Upload Files


System information

   
Affected software Wordpress

Description

On December 29, 2020, the Wordfence Threat Intelligence team was alerted to a potential 0-day vulnerability in the WooCommerce Upload Files plugin, an add-on for WooCommerce with over 5,000 installations. Please note that this is a separate plugin from the main WooCommerce plugin and is designed as an add-on to that plugin. After confirming the […]

More info:

https://www.wordfence.com/blog/2021/03/critical-vulnerability-patched-in-woocommerce-upload-files/

Standar resources

Property Value
CVE CVE-2021-24171.

Version history

Version Comments Date
1.0 Advisory issued 2021-03-09
Ministerio de Defensa
CNI
CCN
CCN-CERT