CVE-2021-25087
Wordpress Download Manager < 3.2.25 - Sensitive Information Disclosure
Severity Score
7.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
1
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The Download Manager WordPress plugin before 3.2.35 does not have any authorisation checks in some of the REST API endpoints, allowing unauthenticated attackers to call them, which could lead to sensitive information disclosure, such as posts passwords (fixed in 3.2.24) and files Master Keys (fixed in 3.2.25).
El plugin Download Manager de WordPress versiones anteriores a 3.2.35, no presenta comprobaciones de autorización en algunos de los endpoints de la API REST, permitiendo a atacantes no autenticados llamarlos, lo que podría conllevar a una divulgación de información confidencial, como las contraseñas de las entradas (corregido en versión 3.2.24) y las claves maestras de los archivos (corregido en versión 3.2.25)
*Credits:
Diogo Real
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2021-01-14 CVE Reserved
- 2022-02-02 CVE Published
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- 2024-11-20 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-284: Improper Access Control
- CWE-862: Missing Authorization
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://wpscan.com/vulnerability/d7ceafae-65ec-4e05-9ed1-59470771bf07 | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Wpdownloadmanager Search vendor "Wpdownloadmanager" | Wordpress Download Manager Search vendor "Wpdownloadmanager" for product "Wordpress Download Manager" | < 3.2.35 Search vendor "Wpdownloadmanager" for product "Wordpress Download Manager" and version " < 3.2.35" | wordpress |
Affected
|