CVE-2022-2392

The Lana Downloads Manager WordPress plugin before 1.8.0 is affected by an arbitrary file download vulnerability that can be exploited by users with "Contributor" permissions or higher.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:lana:lana_downloads_manager:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2022-08-22 15:15

Updated : 2022-08-25 02:53


NVD link : CVE-2022-2392

Mitre link : CVE-2022-2392

CVE.ORG link : CVE-2022-2392


JSON object : View

Products Affected

lana

  • lana_downloads_manager
CWE
CWE-552

Files or Directories Accessible to External Parties