Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-11971 | The Download Plugin WordPress plugin before 2.0.0 does not properly validate a user has the required privileges to access a backup's nonce identifier, which may allow any users with an account on the site (such as subscriber) to download a full copy of the website. |
Fri, 25 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-04-25T15:03:10.128Z
Reserved: 2021-01-14T15:03:46.862Z
Link: CVE-2021-25059
Updated: 2024-08-03T19:49:14.560Z
Status : Modified
Published: 2022-11-28T14:15:10.663
Modified: 2025-04-25T15:15:29.763
Link: CVE-2021-25059
No data.
OpenCVE Enrichment
No data.
No weakness.
EUVD