VYPR
Unrated severityNVD Advisory· Published Mar 16, 2025· Updated Mar 17, 2025

Download Manager < 3.3.07 - Unauthenticated Data Exposure

CVE-2024-13126

Description

The Download Manager WordPress plugin before 3.3.07 doesn't prevent directory listing on web servers that don't use htaccess, allowing unauthorized access of files.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.