CVE-2024-5598
Advancedfilemanager
CVE-2024-5598 allows unauthenticated attackers to access sensitive information via the Advanced File Manager plugin for WordPress. This vulnerability exposes files moved to the Trash folder, potentially including backups and other sensitive data. The Advanced File Manager plugin before version 5.2.4 is affected by this information disclosure flaw.
While the CVSS score is 0, the SOCRadar Vulnerability Risk Score (SVRS) of 30 suggests a moderate level of risk. Though not critical, the vulnerability allows unauthorized access to sensitive files, making it imperative to update the plugin to the latest version immediately. Successfully exploiting this flaw could lead to data breaches and compromise sensitive user or system data. Therefore, prompt mitigation is advised to protect against potential attacks.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.