WooCommerce Help Scout < 2.9.1 - Unauthenticated Arbitrary File Upload leading to RCE
CVE-2021-24212 
9.8CRITICAL
What is CVE-2021-24212?
The WooCommerce Help Scout WordPress plugin before 2.9.1 (https://woocommerce.com/products/woocommerce-help-scout/) allows unauthenticated users to upload any files to the site which by default will end up in wp-content/uploads/hstmp.
Affected Version(s)
WooCommerce Help Scout 2.9.1
References
EPSS Score
67% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
 High
Availability:
 High
Attack Vector:
Network
Attack Complexity:
 Low
Privileges Required:
 None
User Interaction:
 None
Scope:
 Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Ville Korhonen / Seravo