CVE-2024-56217: WordPress Download Manager plugin <= 3.3.03 - Broken Access Control vulnerability
Missing Authorization vulnerability in Shahjada Download Manager download-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Manager: from n/a through <= 3.3.03.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-56217?
CVE-2024-56217 is classified as a Missing Authorization vulnerability that can lead to unauthorized access due to improperly configured access controls.
How do I fix CVE-2024-56217?
To fix CVE-2024-56217, update the W3 Eden Download Manager or WordPress Download Manager to a version later than 3.3.03 that addresses this vulnerability.
Who is affected by CVE-2024-56217?
CVE-2024-56217 affects users of W3 Eden Download Manager and WordPress Download Manager up to and including version 3.3.03.
What type of vulnerability is CVE-2024-56217?
CVE-2024-56217 is identified as a Missing Authorization vulnerability related to broken access control.
What could an attacker achieve by exploiting CVE-2024-56217?
An attacker exploiting CVE-2024-56217 could gain unauthorized access to restricted resources or downloads that should be protected.