CVE-2021-24171 | WooCommerce Upload Files Plugin up to 59.3 on WordPress Blacklist wcuf_file_name unrestricted upload
A vulnerability classified as critical has been found in WooCommerce Upload Files Plugin up to 59.3 on WordPress. This affects an unknown part of the component Blacklist Handler. The manipulation of the argument wcuf_file_name leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2021-24171. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.