First published: Tue Dec 31 2024(Updated: )
Missing Authorization vulnerability in W3 Eden, Inc. Download Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Manager: from n/a through 3.3.03.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
W3 Eden Download Manager | <=3.3.03 | |
WP Download Manager | <=3.3.03 |
Update the WordPress Download Manager wordpress plugin to the latest available version (at least 3.3.04).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-56217 is classified as a Missing Authorization vulnerability that can lead to unauthorized access due to improperly configured access controls.
To fix CVE-2024-56217, update the W3 Eden Download Manager or WordPress Download Manager to a version later than 3.3.03 that addresses this vulnerability.
CVE-2024-56217 affects users of W3 Eden Download Manager and WordPress Download Manager up to and including version 3.3.03.
CVE-2024-56217 is identified as a Missing Authorization vulnerability related to broken access control.
An attacker exploiting CVE-2024-56217 could gain unauthorized access to restricted resources or downloads that should be protected.