CVE Database /
CVE-2024-5599
CVE · High
CVE-2024-5599 — FileOrganizer – WordPress File Manager [fileorganizer] < 1.0.8
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2024-5599
|
FileOrganizer – WordPress File Manager [fileorganizer] < 1.0.8 |
Insecure Storage of Sensitive Information |
High
7.5
|
< 1.0.8
|
1.0.8 |
2024-06-06 |
—
|
CVE-2024-5599
The FileOrganizer – Manage WordPress and Website Files plugin through version 1.0.7 contains a sensitive information exposure vulnerability in the fileorganizer_ajax_handler function that allows unauthenticated attackers to access sensitive files such as backups that have been placed in the plugin's Trash folder. This vulnerability exposes confidential data to unauthorized access without requiring user authentication.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings