Insufficient Restrictions on Brute-Force Guessing of Purchase IDs in Sell-Downloads Plugin for WordPress

Insufficient Restrictions on Brute-Force Guessing of Purchase IDs in Sell-Downloads Plugin for WordPress

CVE-2015-9348 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

The sell-downloads plugin before 1.0.8 for WordPress has insufficient restrictions on brute-force guessing of purchase IDs.

Learn more about our Wordpress Pen Testing.