First published: Thu Oct 06 2016(Updated: )
Open Proxy in filedownload v1.4 wordpress plugin
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MODX CMS File Download | =1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1000002 has a medium severity rating due to its potential for exploitation via open proxy functionality.
To fix CVE-2015-1000002, update the filedownload WordPress plugin to a version higher than 1.4, where the vulnerability is patched.
CVE-2015-1000002 can allow attackers to use your server as an open proxy, potentially exposing your site to further attacks and misuse.
While CVE-2015-1000002 was discovered years ago, sites still using the vulnerable version of the plugin remain at risk until they update.
CVE-2015-1000002 affects version 1.4 of the filedownload WordPress plugin specifically.