The Download Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability checks on the 'dpwap_handle_download_user' and 'dpwap_handle_download_comment' functions in all versions up to, and including, 2.2.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to download any comment, and download metadata for any user including user PII and sensitive information including username, email, hashed passwords and application passwords, session token information and more depending on set up and additional plugins installed.
Metrics
Affected Vendors & Products
References
History
Fri, 25 Oct 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Metagauss
Metagauss download Plugin |
|
CPEs | cpe:2.3:a:metagauss:download_plugin:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Metagauss
Metagauss download Plugin |
Wed, 23 Oct 2024 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 23 Oct 2024 05:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The Download Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability checks on the 'dpwap_handle_download_user' and 'dpwap_handle_download_comment' functions in all versions up to, and including, 2.2.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to download any comment, and download metadata for any user including user PII and sensitive information including username, email, hashed passwords and application passwords, session token information and more depending on set up and additional plugins installed. | |
Title | Download Plugin <= 2.2.0 - Missing Authorization to Authenticated (Subscriber+) User Metadata and Comment Download | |
Weaknesses | CWE-862 | |
References |
|
|
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Wordfence
Published: 2024-10-23T05:35:06.432Z
Updated: 2024-10-23T14:02:17.934Z
Reserved: 2024-10-10T19:21:00.964Z
Link: CVE-2024-9829
Vulnrichment
Updated: 2024-10-23T14:02:13.847Z
NVD
Status : Analyzed
Published: 2024-10-23T06:15:11.007
Modified: 2024-10-25T16:30:44.520
Link: CVE-2024-9829
Redhat
No data.