VYPR

PHP Download Manager

by PHP Download Manager

CVEs (5)

  • CVE-2020-23060HigOct 22, 2021
    risk 0.46cvss 7.1epss 0.00

    Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attackers to escalate local process privileges via a crafted ef2 file.

  • CVE-2020-28964MedOct 22, 2021
    risk 0.44cvss 6.7epss 0.00

    Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulnerability allows attackers to escalate local process privileges via unspecified vectors.

  • CVE-2017-20093MedJun 24, 2022
    risk 0.28cvss 4.3epss 0.00

    A vulnerability, which was classified as problematic, was found in Download Manager Plugin 2.8.99. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely.

  • CVE-2005-3769Nov 23, 2005
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in files.php in PHP Download Manager 1.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter.

  • CVE-2010-0995May 6, 2010
    risk 0.01cvss epss 0.07

    Stack-based buffer overflow in Internet Download Manager (IDM) before 5.19 allows remote attackers to execute arbitrary code via a crafted FTP URI that causes unspecified "test sequences" to be sent from client to server.