Input validation vulnerability in Ultimate Product Catalog 4.2.22

The Ultimate Product Catalog plugin for WordPress is vulnerable to security issues. Before versions 3.1.2 and 4.2.22, attackers who don’t have permission to use the website, or attackers who have permission to use the website but are only a ‘subscriber’ may be able to upload files to the website’s server. This could allow them to run code that would not normally be allowed, and put the website at risk.

Detected in:

Ultimate Product Catalog fixed vulnerable versions: >= * < 4.2.22

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.