Логотип exploitDog
bind:CVE-2020-24312
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-24312

Количество 2

Количество 2

nvd логотип

CVE-2020-24312

больше 5 лет назад

mndpsingh287 WP File Manager v6.4 and lower fails to restrict external access to the fm_backups directory with a .htaccess file. This results in the ability for unauthenticated users to browse and download any site backups, which sometimes include full database backups, that the plugin has taken.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-2652-63hr-2gvh

больше 3 лет назад

mndpsingh287 WP File Manager v6.4 and lower fails to restrict external access to the fm_backups directory with a .htaccess file. This results in the ability for unauthenticated users to browse and download any site backups, which sometimes include full database backups, that the plugin has taken.

CVSS3: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-24312

mndpsingh287 WP File Manager v6.4 and lower fails to restrict external access to the fm_backups directory with a .htaccess file. This results in the ability for unauthenticated users to browse and download any site backups, which sometimes include full database backups, that the plugin has taken.

CVSS3: 7.5
52%
Средний
больше 5 лет назад
github логотип
GHSA-2652-63hr-2gvh

mndpsingh287 WP File Manager v6.4 and lower fails to restrict external access to the fm_backups directory with a .htaccess file. This results in the ability for unauthenticated users to browse and download any site backups, which sometimes include full database backups, that the plugin has taken.

CVSS3: 7.5
52%
Средний
больше 3 лет назад

Уязвимостей на страницу