[webapps] WooCommerce 1.5.0 - Unauthenticated Arbitrary File Upload
An unauthenticated arbitrary file upload exploit was released for a WooCommerce component version 1.5.0, risking site compromise.
Exploit-DB published exploit #52642 targeting WooCommerce 1.5.0. The flaw allows unauthenticated arbitrary file uploads, which can lead to remote code execution on affected web servers. The disclosure text does not report exploitation in the wild.
23