CVE-2021-24786

HIGH NUCLEI

WordPress Download Monitor <4.4.5 - SQL Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2021-24786. PoCs published by Ron Jost. A Nuclei detection template is also available.

AI-analyzed exploit summary This exploit targets an SQL injection vulnerability in the WordPress Download Monitor plugin (CVE-2021-24786) by manipulating the 'orderby' GET parameter. It requires authentication and allows arbitrary SQL command execution via a crafted URL.

Description

The Download Monitor WordPress plugin before 4.4.5 does not properly validate and escape the "orderby" GET parameter before using it in a SQL statement when viewing the logs, leading to an SQL Injection issue

Exploits (1)

exploitdb WORKING POC
by Ron Jost · pythonwebappsphp
https://www.exploit-db.com/exploits/50695

This exploit targets an SQL injection vulnerability in the WordPress Download Monitor plugin (CVE-2021-24786) by manipulating the 'orderby' GET parameter. It requires authentication and allows arbitrary SQL command execution via a crafted URL.

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Moderate
Reliability
Reliable
Target: WordPress Download Monitor plugin < 4.4.5
Auth required
Prerequisites: Valid WordPress credentials · At least one log entry in the Download Monitor plugin
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Nuclei Templates (1)

Download Monitor < 4.4.5 - SQL Injection
HIGHVERIFIEDby MrHarsh

References (1)

Core 1
Core References
Exploit, Third Party Advisory x_refsource_misc
https://wpscan.com/vulnerability/a6571f16-66d2-449e-af83-1c6ddd56edfa

Scores

CVSS v3 7.2
EPSS 0.1748
EPSS Percentile 96.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-89
Status published
Products (1)
wpchill/download_monitor < 4.4.5
Published Jan 03, 2022
Tracked Since Feb 18, 2026