Access violation vulnerability in File Manager Pro – Filester 1.8.2

The File Manager Pro – Filester plugin for WordPress has a security issue that allows unauthorized changes to be made to the data. This is because it does not have a way to check if a user has the right permissions before using the ‘njt_fs_saveSettingRestrictions’ function. This means that someone who is logged in and has been given special permissions by an Administrator can change the plugin settings, including allowing dangerous file types like .php to be uploaded.

Detected in:

File Manager Pro – Filester fixed vulnerable versions: >= * <= 1.8.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.