WP Clinic
Entrar Registrarse

CVE · Medium

CVE-2021-24698 — Simple Download Monitor [simple-download-monitor] < 3.9.6

CVE Vulnerabilidad Tipo Gravedad Afectadas Corregido en Publicado Estado
CVE-2021-24698 Simple Download Monitor [simple-download-monitor] < 3.9.6 Control de acceso incorrecto Media 4,3 < 3.9.6 3.9.6 2021-10-05

CVE-2021-24698

The Simple Download Monitor WordPress plugin before 3.9.6 allows users with a role as low as Contributor to remove thumbnails from downloads they do not own, even if they cannot normally edit the download.

Descripción técnica mostrada en el idioma original de la fuente (inglés).

Fuente: CVE.org

Escanea tu sitio WordPress gratis

Sin registro, sin tarjeta de crédito — ingresa tu URL y obtén un informe de seguridad en segundos.