CVE-2022-2392
PoC —CVSS 3.1
6.5 medium
EPSS
1%p64
Published
()
Modified
Description
The Lana Downloads Manager WordPress plugin before 1.8.0 is affected by an arbitrary file download vulnerability that can be exploited by users with "Contributor" permissions or higher.
- Vendors
- lana
- Products
- lana downloads manager
- Ecosystems
- WordPress
- Weakness
- CWE-552
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.