First published: Thu Oct 17 2024(Updated: )
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in CodeFlock FREE DOWNLOAD MANAGER allows Path Traversal.This issue affects FREE DOWNLOAD MANAGER: from n/a through 1.0.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Free Download Manager | <=1.0.0 | |
WordPress Download Manager | <=1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-49315 is considered high due to the potential for unauthorized file access through path traversal.
To fix CVE-2024-49315, update CodeFlock FREE DOWNLOAD MANAGER to a version higher than 1.0.0.
CVE-2024-49315 facilitates path traversal attacks that can lead to unauthorized file system access.
CVE-2024-49315 affects FREE DOWNLOAD MANAGER versions up to and including 1.0.0.
Currently, the best workaround for CVE-2024-49315 is to restrict access to the software or upgrade to a patched version.