Unrated severityNVD Advisory· Published Mar 16, 2025· Updated Mar 17, 2025
Download Manager < 3.3.07 - Unauthenticated Data Exposure
CVE-2024-13126
Description
The Download Manager WordPress plugin before 3.3.07 doesn't prevent directory listing on web servers that don't use htaccess, allowing unauthorized access of files.
Affected products
1- Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/c2c69a44-4ecc-41d1-a10c-cfe9c875b803/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.