CVE-2014-8585
Directory traversal vulnerability in the WordPress Download Manager plugin for WordPress allows remote attackers to read
Directory traversal vulnerability in the WordPress Download Manager plugin for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the fname parameter to (1) views/file_download.php or (2) file_download.php.
MEDIUM · CVSS 5
EPSS 0.0015
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0