Arbitrary File Upload Vulnerability in WordPress Ultimate Product Catalog by Etoile Web Design
CVE-2016-20075
Key Information:
- Vendor
WordPress
- Status
- Vendor
- CVE Published:
- 15 June 2026
Badges
What is CVE-2016-20075?
The WordPress Ultimate Product Catalog version 3.8.6 is susceptible to an arbitrary file upload vulnerability. Authenticated users with roles such as contributor, editor, author, or administrator can exploit this weakness through the custom fields feature in the Products tab. This allows attackers to upload malicious files, including PHP shells, to the server. Once uploaded, these files can be accessed via the upcp-product-file-uploads directory, enabling unauthorized code execution on the server and potentially compromising the security of the entire website.
Affected Version(s)
Ultimate Product Catalog 3.8.6
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved