CVE-2022-1585
7.5HIGHThe Project Source Code Download WordPress plugin through 1.0.0 does not protect its backup generation and download functionalities, which may allow any visitors on the site to download the entire sit
Published: 8/1/2022Updated: 11/21/2024
Description
The Project Source Code Download WordPress plugin through 1.0.0 does not protect its backup generation and download functionalities, which may allow any visitors on the site to download the entire site, including sensitive files like wp-config.php.
AI AnalysisPowered by AI
Affected Products
project-source-code-download_projectproject-source-code-download
1.0.0
References
- https://wpscan.com/vulnerability/e709958c-7bce-45d7-9a0a-6e0ed12cd03fExploitThird Party Advisory
- https://wpscan.com/vulnerability/e709958c-7bce-45d7-9a0a-6e0ed12cd03fExploitThird Party Advisory