VulnerabilityModified
CVE-2017-20097
A vulnerability was found in WP-Filebase Download Manager Plugin 3.4.4.
MEDIUM 6.1EPSS 0.65%
Does this matter?
Lower severity and a low EPSS score (0.65%). Track it; it rarely justifies an emergency change on its own.
Description
A vulnerability was found in WP-Filebase Download Manager Plugin 3.4.4. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to basic cross site scripting. The attack may be launched remotely.
- CVSS 3.1
- 6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- EPSS
- 0.65% probability · 49th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-80, CWE-79
- Affected
- wp-filebase download manager project/wp-filebase download manager
- Source
- cna@vuldb.com
References
- http://seclists.org/fulldisclosure/2017/Feb/78Exploit, Mailing List, Third Party Advisory
- https://vuldb.com/?id.97370Third Party Advisory
- http://seclists.org/fulldisclosure/2017/Feb/78Exploit, Mailing List, Third Party Advisory
- https://vuldb.com/?id.97370Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.