CVE-2017-20093: Download Manager Plugin cross-site request forgery
Published Jun 24, 2022
·Updated
A vulnerability, which was classified as problematic, was found in Download Manager Plugin 2.8.99. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely.
Affected Software
2 affected components
Wpdownloadmanager Wordpress Download Manager Wordpress=2.8.99
W3eden Download Manager Wordpress=2.8.99
Event History
Jun 24, 2022
CVE Published
via MITRE·06:45 AM
Data Sourced
via MITRE·06:45 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-20093?
CVE-2017-20093 is classified as a problematic vulnerability.
2
How do I fix CVE-2017-20093?
To fix CVE-2017-20093, update the Download Manager Plugin to the latest version available.
3
What type of vulnerability is CVE-2017-20093?
CVE-2017-20093 is a cross-site request forgery (CSRF) vulnerability.
4
Can CVE-2017-20093 be exploited remotely?
Yes, CVE-2017-20093 can be exploited remotely, allowing attackers to manipulate functions.
5
Which software is affected by CVE-2017-20093?
CVE-2017-20093 affects the Download Manager Plugin version 2.8.99 for WordPress.