CM Download Manager – Simplify file sharing with powerful download management

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in CM Download Manager – Simplify file sharing with powerful download management 2.9.6

    Fixed

    The CM Download Manager is a plugin for WordPress that helps with managing downloads. However, it has a security issue where any file on the server can be deleted by someone who is not logged in. Thi...

    Read More
  • Input validation vulnerability in CM Download Manager – Document and File Management 2.9.1

    Fixed

    The CM Download Manager plugin for WordPress has a security issue in versions up to 2.9.1. This is because the 'editHeader' function does not properly validate nonces, which can allow attackers to ed...

    Read More
  • Input validation vulnerability in CM Download Manager – Document and File Management 2.9.0

    Fixed

    The CM Download Manager plugin for WordPress has a security issue in versions up to 2.9.0. This is because it does not properly check for a unique code when using the 'delHeader' function. As a resul...

    Read More
  • Input validation vulnerability in CM Download Manager – Document and File Management 2.9.0

    Fixed

    The CM Download Manager plugin for WordPress has a security vulnerability in versions up to 2.9.0. This is because it doesn't properly check for a security code when using the 'unpublishHeader' funct...

    Read More
  • Input validation vulnerability in CM Download Manager 2.0.6

    Fixed

    The CreativeMinds CM Downloads Manager plugin for WordPress

    Read More
  • Input validation vulnerability in CM Download Manager 2.8.0

    Fixed

    The CM Download Manager plugin for WordPress has a security issue in versions up to 2.7.0. A malicious person could take advantage of this vulnerability to inject harmful web scripts into a user's bro...

    Read More
  • Access violation vulnerability in CM Download Manager 2.8.0

    Fixed

    The CM Download Manager plugin version 2.7.0 for WordPress has a security flaw that allows authorized users to delete files that they are not supposed to. This could lead to a denial of service and di...

    Read More
  • Input validation vulnerability in CM Download Manager 2.8.5

    Fixed

    The CM Download Manager plugin for WordPress is not secure in versions up to and including 2.8.5. This could allow people with administrator-level permissions to upload dangerous files to the website'...

    Read More
  • Input validation vulnerability in CM Download Manager 2.8.0

    Fixed

    The CM Download Manager plugin for WordPress is not secure in versions up to 2.7.0. Hackers who have special privileges can insert malicious web scripts into pages which will be triggered each time a ...

    Read More
  • Input validation vulnerability in CM Download Manager 2.0.3

    Fixed

    The CreativeMinds CM Downloads Manager plugin

    Read More