Access violation vulnerability in Download Manager 2.8.8

The Download Manager plugin for WordPress could allow unauthenticated attackers to access and download sensitive information from websites. This is because the plugin, in versions up to 2.8.7, does not check if users have permission to do this. This means that attackers can link any file to a post and then download it.

Detected in:

Download Manager fixed vulnerable versions: >= * < 2.8.8
Download Manager Pro fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.