Vulnerabilities > Wpchill > Download Monitor > 4.7.70

DATE CVE VULNERABILITY TITLE RISK
2024-09-26 CVE-2024-8552 Missing Authorization vulnerability in Wpchill Download Monitor
The Download Monitor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the enable_shop() function in all versions up to, and including, 5.0.9.
network
low complexity
wpchill CWE-862
4.3
2024-03-29 CVE-2024-30501 Unspecified vulnerability in Wpchill Download Monitor
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.9.4.
network
low complexity
wpchill
7.2
2023-12-20 CVE-2023-34007 Unspecified vulnerability in Wpchill Download Monitor
Unrestricted Upload of File with Dangerous Type vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.8.3.
network
low complexity
wpchill
8.8
2023-11-13 CVE-2023-31219 Unspecified vulnerability in Wpchill Download Monitor
Server-Side Request Forgery (SSRF) vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.8.1.
network
low complexity
wpchill
4.9