This does not validate a path generated with user input when downloading files, allowing unauthenticated user to download arbitrary files from the server
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-01T20:40:47.248Z
Reserved: 2024-05-01T14:51:24.226Z
Link: CVE-2024-4388
Updated: 2024-08-01T20:40:47.248Z
Status : Deferred
Published: 2024-05-23T06:15:11.493
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-4388
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.