Security Advisory

CVE-2020-24145

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-07-07 13:37:59
Last updated 2024-08-04 15:05:11
Assigner mitre
State PUBLISHED

Description

Cross Site Scripting (XSS) vulnerability in the CM Download Manager (aka cm-download-manager) plugin 2.7.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via a crafted deletescreenshot action.