CVE-2022-50972

CRITICAL

WooCommerce 7.1.0 Remote Code Execution via class-wc-meta-box-product-images.php

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2022-50972. PoCs published by Milad karimi.

AI-analyzed exploit summary The exploit demonstrates a Remote Code Execution (RCE) vulnerability in WooCommerce v7.1.0 by injecting PHP code via the 'product-type' parameter in a GET request. The vulnerable code unsafely uses user input in a file inclusion context, allowing arbitrary PHP execution.

Description

WooCommerce 7.1.0 contains a remote code execution vulnerability that allows attackers to execute arbitrary PHP code by injecting shell commands through the product-type parameter. Attackers can send requests to the class-wc-meta-box-product-images.php endpoint with unsanitized product-type values to write malicious PHP files to the web root.

Exploits (1)

exploitdb WORKING POC
by Milad karimi · textwebappsphp
https://www.exploit-db.com/exploits/51156

The exploit demonstrates a Remote Code Execution (RCE) vulnerability in WooCommerce v7.1.0 by injecting PHP code via the 'product-type' parameter in a GET request. The vulnerable code unsafely uses user input in a file inclusion context, allowing arbitrary PHP execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: WooCommerce v7.1.0
No auth needed
Prerequisites: Access to the target WooCommerce installation · Ability to send HTTP requests to the vulnerable endpoint
devstral-2 · analyzed Jun 20, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit exploit
ExploitDB-51156
https://www.exploit-db.com/exploits/51156
Product product
Official Product Homepage
https://wordpress.org/plugins/woocommerce
Third Party Advisory third-party-advisory
VulnCheck Advisory: WooCommerce 7.1.0 Remote Code Execution via class-wc-meta-box-product-images.php
https://www.vulncheck.com/advisories/woocommerce-remote-code-execution-via-class-wc-meta-box-product-images-php

Scores

CVSS v3 9.8
EPSS 0.0063
EPSS Percentile 45.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-94
Status published
Products (1)
WooCommerce/WooCommerce 7.1.0
Published Jun 20, 2026
Tracked Since Jun 20, 2026