cleantalk
Vulnerabilities and Security Researches

Download Manager, CVE-2023-1809

CVE, Research URL

CVE-2023-1809

Application

Download Manager

Published on
May 02, 2023
Research Description
The Download Manager WordPress plugin before 6.3.0 leaks master key information without the need for a password, allowing attackers to download arbitrary password-protected package files.
Affected versions
Min -, max 3.2.71.
Status
vulnerable