CVE-2025-1785Path Traversal in Download Manager

Severity
8.1HIGHNVD
CNA5.4
EPSS
1.0%
top 23.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 13

Description

The Download Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.3.08 via the 'wpdm_newfile' action. This makes it possible for authenticated attackers, with Author-level access and above, to overwrite select file types outside of the originally intended directory, which may cause a denial of service.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:HExploitability: 2.8 | Impact: 5.2

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-m9h9-765x-qwq4: The Download Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 32025-03-13
CVEList
Download Manager <= 3.3.08 - Authenticated (Author+) Path Traversal to Limited File Overwrite2025-03-13

📋Vendor Advisories

1
Microsoft
Out-of-bounds Write in vim/vim2022-05-10
CVE-2025-1785 — Path Traversal in Download Manager | cvebase