ZeroHour

CVE-2022-2392

PoC
CVSS 3.1
6.5 medium
EPSS
1%p64
Published
()
Modified
Description

The Lana Downloads Manager WordPress plugin before 1.8.0 is affected by an arbitrary file download vulnerability that can be exploited by users with "Contributor" permissions or higher.

Vendors
lana
Products
lana downloads manager
Ecosystems
WordPress
Weakness
CWE-552
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.