First published: Mon Oct 10 2022(Updated: )
The Download Monitor WordPress plugin before 4.5.98 does not ensure that files to be downloaded are inside the blog folders, and not sensitive, allowing high privilege users such as admin to download the wp-config.php or /etc/passwd even in an hardened environment or multisite setup.
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
WPChill Download Monitor | <4.5.98 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-2981.
The severity of CVE-2022-2981 is medium (4.9).
The Download Monitor WordPress plugin before version 4.5.98 is affected by CVE-2022-2981.
The impact of CVE-2022-2981 is that high privilege users, such as admin, can download sensitive files like wp-config.php or /etc/passwd.
Yes, updating to version 4.5.98 or higher of the Download Monitor WordPress plugin will fix CVE-2022-2981.