cleantalk
Vulnerabilities and Security Researches

Download Manager, CVE-2024-13126

CVE, Research URL

CVE-2024-13126

Application

Download Manager

Published on
Mar 16, 2025
Research Description
The Download Manager WordPress plugin before 3.3.07 doesn't prevent directory listing on web servers that don't use htaccess, allowing unauthorized access of files.
Affected versions
Min -, max 3.3.07.
Status
vulnerable