Wpfactory

Download Plugins And Themes From Dashboard

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.71%
  • Published 22.05.2024 06:15:12
  • Last modified 21.11.2024 09:19:50

Path traversal vulnerability exists in Download Plugins and Themes from Dashboard versions prior to 1.8.6. If this vulnerability is exploited, a remote authenticated attacker with "switch_themes" privilege may obtain arbitrary files on the server.

  • EPSS 0.3%
  • Published 07.10.2019 22:15:10
  • Last modified 21.11.2024 04:31:55

includes/settings/class-alg-download-plugins-settings.php in the download-plugins-dashboard plugin through 1.5.0 for WordPress has multiple unauthenticated stored XSS issues.