CVE-2024-11768 - "Amped Solutions WordPress Download Manager Password Protection Bypass vulnerability"

CVE ID : CVE-2024-11768 Published : Dec. 19, 2024, 6:15 a.m. | 3 hours, 14 minutes ago Description : The Download Manager plugin for WordPress is vulnerable to unauthorized download of password-protected content due to improper password validation on the checkFilePassword function in all versions up to, and including, 3.3.03. This makes it possible for unauthenticated attackers to download password-protected files. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Dez 19, 2024 - 10:30
 0  1
CVE-2024-11768 - "Amped Solutions WordPress Download Manager Password Protection Bypass vulnerability"
CVE ID : CVE-2024-11768
Published : Dec. 19, 2024, 6:15 a.m. | 3 hours, 14 minutes ago
Description : The Download Manager plugin for WordPress is vulnerable to unauthorized download of password-protected content due to improper password validation on the checkFilePassword function in all versions up to, and including, 3.3.03. This makes it possible for unauthenticated attackers to download password-protected files.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...