CM Download Manager <= 2.0.0 - Code Injection
Affects Plugin
fixed in version 2.0.4
|
References
CVE | 2014-8877 |
EXPLOITDB | 35324 |
PACKETSTORM | 129183 |
URL | https://downloadsmanager.cminds.com/release-notes/ |
Classification
Type | RCE |
OWASP Top 10 | A1: Injection |
CWE | CWE-94 |
Miscellaneous
Submitter | ethicalhack3r |
Submitter Website | https://dewhurstsecurity.com/ |
Submitter Twitter | ethicalhack3r |
Views | 1951 |
Verified | No |
WPVDB ID | 7679 |
Timeline
Added | 2014-11-20 (over 4 years ago) |
Last Updated | 2015-05-15 (almost 4 years ago) |
Copyright & License
Copyright | All data and resources contained within this page and this web site is Copyright © The WPScan Team. |
License | Some of this data may be used for non-commercial purposes, however, any potential commercial usage of this data will require a license. If you would like to inquire about a commercial license please contact us. |