PT-2026-50363 · WordPress · Wp Media Folder Addon
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
WP Media folder Addon versions 4.0.1 and earlier
Description
An unauthenticated arbitrary file download issue exists, allowing an attacker to download files from the server without providing credentials.
Recommendations
Update WP Media folder Addon to a version later than 4.0.1.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wp Media Folder Addon