CVE-2024-49658 | Ecomerciar Woocommerce Custom Profile Picture Plugin up to 1.0 on WordPress unrestricted upload
A vulnerability labeled as critical has been found in Ecomerciar Woocommerce Custom Profile Picture Plugin up to 1.0 on WordPress. This vulnerability affects unknown code of the component Profile Picture Handler. The manipulation results in unrestricted upload.
This vulnerability is reported as CVE-2024-49658. The attack can be launched remotely. No exploit exists.