The Download Manager WordPress plugin before 3.2.83 does not protect file download's passwords, leaking it upon receiving an invalid one.
References
Link Resource
https://wpscan.com/vulnerability/244c7c00-fc8d-4a73-bbe0-7865c621d410 Broken Link Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: WPScan

Published: 2024-01-01T14:18:53.519Z

Updated: 2024-01-01T14:18:53.519Z

Reserved: 2023-11-30T10:31:42.688Z


Link: CVE-2023-6421

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2024-01-01T15:15:43.347

Modified: 2024-01-08T19:08:31.977


Link: CVE-2023-6421

JSON object: View

cve-icon Redhat Information

No data.

CWE