Skip to content

Known CVE

WooCommerce Help Scout - Arbitrary File Upload

WooCommerce Help Scout plugin before version 2.9.1 contains an unrestricted file upload vulnerability. The vulnerability allows unauthenticated users to upload arbitrary files to the server which by default will end up in wp-content/uploads/hstmp/ directory, potentially leading to remote code execution.

CVE-2021-24212

Critical2021CVSS 9.8CWE-434

cve2021 · wp · wordpress · wp-plugin · file-upload · rce · woocommerce-help-scout · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website