Weak configuration vulnerability in File Manager 7.2.1

The File Manager plugin for WordPress has a security issue that exposes sensitive information. This problem affects all versions up to 7.2.1. The backup filenames for this plugin use a timestamp and 4 random digits, but they are not random enough. As a result, attackers who are not logged in can access important data, such as site backups. This can happen if the .htaccess file in the directory does not prevent unauthorized access.

Detected in:

File Manager fixed vulnerable versions: >= * <= 7.2.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.