Showing 1 vulnerability on this page for Google for WooCommerce

Signals CISA KEV Ransomware Nuclei
WooCommerce vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Google for WooCommerce <= 2.8.6 - Information Disclosure via Publicly Accessible PHP Info File

The Google for WooCommerce plugin for WordPress is vulnerable to Information Disclosure in all versions up to, and including, 2.8.6. This is due to publicly accessible print_php_information.php file. This makes it possible for unauthenticated attackers to retrieve information about Webserver and PHP configuration, which can be used to aid other attacks.

CWE-862Nov 18, 20241 related artifact
CVSS5.3v3.1EPSS0.879%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX