Record summary

CVE-2022-4140 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.

Description

The Welcart e-Commerce WordPress plugin before 2.8.5 does not validate user input before using it to output the content of a file, which could allow unauthenticated attacker to read arbitrary files on the server

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 10, 2025 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus

Welcart e-Commerce

Default status: unaffected

CVE ListBefore 2.8.5affected

Nuclei templates

1
ProjectDiscoveryHIGHWordPress Welcart e-Commerce <2.8.5 - Arbitrary File AccessCVSS 7.5

WordPress Welcart e-Commerce plugin before 2.8.5 is susceptible to arbitrary file access. The plugin does not validate user input before using it to output the content of a file, which can allow an attacker to read arbitrary files on the server, obtain sensitive information, modify data, and/or execute unauthorized operations.

Impact

An attacker can access sensitive files on the server, potentially exposing sensitive information.

Remediation

Fixed in version 2.8.5.

WeaknessesCWE-552
Authorstheamanrawat
Template tagscvecve2022usc-e-shopwpscanwp-pluginwpwordpresslfiunauthenticatedcollnevuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:a:collne:welcart_e-commerce:*:*:*:*:*:wordpress:*:*

Source: ProjectDiscovery

References

2