PT-2026-64846 · WordPress · Download Manager
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Download Manager WordPress plugin versions prior to 3.3.62
Description
The plugin fails to bind temporary download tokens to the requesting session and does not expire them promptly. This results in the token becoming a long-lived, multi-use, portable bearer token. An attacker who obtains a leaked download key can use it to repeatedly download package files that are protected by passwords or user roles without proper authorization.
Recommendations
Update Download Manager WordPress plugin to version 3.3.62 or later.
Exploit
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Download Manager