Stefan Keller WooCommerce Payment Gateway for Saferpay Path Traversal Vulnerability
Vulnerability
A path traversal vulnerability exists in the WooCommerce Payment Gateway for Saferpay, specifically in versions through 0.4.9. This vulnerability allows attackers to manipulate file paths, potentially accessing files outside of the intended directory.
Impact
Exploitation of this vulnerability could lead to unauthorized file access on the server, allowing attackers to read sensitive files or execute malicious scripts.
Remediation
Users are advised to remove and replace this plugin, as it has not been updated in over a year and no official fix is available. Patchstack offers a virtual patch to mitigate this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
