The Project Source Code Download WordPress plugin through 1.0.0 does not protect its backup generation and download functionalities, which may allow any visitors on the site to download the entire site, including sensitive files like wp-config.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2022-08-01T12:48:01

Updated: 2024-08-03T00:10:03.753Z

Reserved: 2022-05-04T00:00:00

Link: CVE-2022-1585

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-01T13:15:09.877

Modified: 2024-11-21T06:41:01.180

Link: CVE-2022-1585

cve-icon Redhat

No data.