CVE · Medium

CVE-2017-2217 — Download Manager [download-manager] < 2.9.51

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2017-2217 Download Manager [download-manager] < 2.9.51 URL Redirection to Untrusted Site ('Open Redirect') Medium 6.1 < 2.9.51 2.9.51 2017-06-13

CVE-2017-2217

The WordPress Download Manager plugin from W3 Eden, Inc. versions before 2.9.51 contain an open redirect flaw that allows attackers to redirect users to arbitrary external websites. This vulnerability was discovered by Gen Sato of Mitsui Bussan Secure Directions, Inc. and coordinated through JPCERT/CC under a security partnership framework.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.