The Download Manager WordPress plugin before 3.3.07 doesn't prevent directory listing on web servers that don't use htaccess, allowing unauthorized access of files.
References
| Link | Resource |
|---|---|
| https://wpscan.com/vulnerability/c2c69a44-4ecc-41d1-a10c-cfe9c875b803/ | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2025-03-16 06:15
Updated : 2025-04-09 13:06
NVD link : CVE-2024-13126
Mitre link : CVE-2024-13126
CVE.ORG link : CVE-2024-13126
JSON object : View
Products Affected
w3eden
- download_manager
CWE
CWE-552
Files or Directories Accessible to External Parties
