Vulnerabilities > Jquindlen

DATE CVE VULNERABILITY TITLE RISK
2012-06-16 CVE-2012-3576 Permissions, Privileges, and Access Controls vulnerability in Jquindlen Wpstorecart
Unrestricted file upload vulnerability in php/upload.php in the wpStoreCart plugin before 2.5.30 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/wpstorecart.
network
low complexity
jquindlen wordpress CWE-264
critical
10.0