The Project Source Code Download WordPress plugin through 1.0.0 does not protect its backup generation and download functionalities, which may allow any visitors on the site to download the entire site, including sensitive files like wp-config.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2022-08-01T12:48:01
Updated: 2024-08-03T00:10:03.753Z
Reserved: 2022-05-04T00:00:00
Link: CVE-2022-1585
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-08-01T13:15:09.877
Modified: 2024-11-21T06:41:01.180
Link: CVE-2022-1585
Redhat
No data.