Back to search
CVE-2024-35162
Published: May 22, 2024
Modified: Aug 12, 2024
PUBLISHED
Description
Path traversal vulnerability exists in Download Plugins and Themes from Dashboard versions prior to 1.8.6. If this vulnerability is exploited, a remote authenticated attacker with "switch_themes" privilege may obtain arbitrary files on the server.
| Vendor | Product | Versions |
|---|---|---|
WPFactory LLC | Download Plugins and Themes from Dashboard | affected prior to 1.8.6 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now