Path Traversal Vulnerability Affects Premmerce Permalink Manager for WooCommerce
CVE-2024-27971
8.3HIGH
Key Information
- Vendor
- Premmerce
- Status
- Premmerce Permalink Manager For WooCommerce
- Vendor
- CVE Published:
- 17 May 2024
Summary
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Premmerce Premmerce Permalink Manager for WooCommerce allows PHP Local File Inclusion.This issue affects Premmerce Permalink Manager for WooCommerce: from n/a through 2.3.10.
Affected Version(s)
Premmerce Permalink Manager for WooCommerce <= 2.3.10
CVSS V3.1
Score:
8.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published.
Vulnerability Reserved.
Collectors
NVD DatabaseMitre Database
Credit
Rafie Muhammad (Patchstack)