CVE-2022-4140
Welcart e-Commerce < 2.8.5 - Unauthenticated Arbitrary File Access
Record summary
CVE-2022-4140 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.
Description
The Welcart e-Commerce WordPress plugin before 2.8.5 does not validate user input before using it to output the content of a file, which could allow unauthenticated attacker to read arbitrary files on the server
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 10, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Welcart e-CommerceDefault status: unaffected | CVE List | Before 2.8.5 | affected |
Nuclei templates
1ProjectDiscoveryHIGHWordPress Welcart e-Commerce <2.8.5 - Arbitrary File AccessCVSS 7.5
WordPress Welcart e-Commerce plugin before 2.8.5 is susceptible to arbitrary file access. The plugin does not validate user input before using it to output the content of a file, which can allow an attacker to read arbitrary files on the server, obtain sensitive information, modify data, and/or execute unauthorized operations.
Impact
An attacker can access sensitive files on the server, potentially exposing sensitive information.
Remediation
Fixed in version 2.8.5.
Source: ProjectDiscovery