Description

Unrestricted Upload of File with Dangerous Type vulnerability in ecomerciar Woocommerce Custom Profile Picture woo-custom-profile-picture allows Upload a Web Shell to a Web Server.This issue affects Woocommerce Custom Profile Picture: from n/a through <= 1.0.

INFO

Published Date :

2024-10-23T15:37:49.723Z

Last Modified :

2026-04-28T16:10:26.831Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2024-49658 vulnerability.

Vendors Products
Ecomerciar
  • Woocommerce Custom Profile Picture
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact