CVE-2015-10135 | WPshop 2 prior 1.3.9.6 on WordPress ajaxUpload unrestricted upload (EUVD-2015-9394)
A vulnerability, which was classified as critical, was found in WPshop 2 on WordPress. This affects the function ajaxUpload. The manipulation results in unrestricted upload.
This vulnerability is reported as CVE-2015-10135. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.