Beveiligingsadvies

CVE-2024-8031

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-05-15 20:07:12
Laatst bijgewerkt 2025-05-17 03:24:49
Toegewezen door WPScan
CVSS-score 6.5
Status PUBLISHED

Beschrijving

The Secure Downloads WordPress plugin before 1.2.3 is vulnerable does not properly restrict which files can be downloaded. This makes it possible for authenticated attackers, with admin-level access and above, to download arbitrary files that may contain sensitive information like wp-config.php.