Record summary

CVE-2024-11740 has a selected CVSS score of 7.3 (high); EIP currently links 1 Nuclei template.

Description

The The Download Manager plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.3.03. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Sep 11, 2025 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationNone
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 19, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Default status: unaffected

CVE ListThrough 3.3.03affected
VulnCheckVersion data not supplied

Nuclei templates

1
ProjectDiscoveryHIGHDownload Manager < 3.3.04 - Unauthenticated Arbitrary Shortcode ExecutionCVSS 7.3

The The Download Manager plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.3.03. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.

Impact

Unauthenticated attackers can execute arbitrary shortcodes which may expose sensitive information or perform unauthorized actions.

Remediation

Update Download Manager plugin to version 3.3.04 or later.

WeaknessesCWE-94
Authorsiamnoooob, rootxharsh, pdresearch
Template tagscvecve2024wordpresswp-plugindownload-managershort-codewpvkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CPE: cpe:2.3:a:wpdownloadmanager:download_manager:*:*:*:*:*:wordpress:*:*

Source: ProjectDiscovery

References

4