CVE-2022-45354


WordPress Download Monitor Plugin <= 4.7.60 is vulnerable to Sensitive Data Exposure

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.7.60.



We have discovered 378 live websites that are affected by CVE-2022-45354.

Contact us to get more info




Affected Software

Product  Download Monitor
Category Wordpress Plugins
Vulnerable Versions
  • from 0 through 4.7.60
Total Vulnerable Versions76
Vulnerable Domains378 live websites (2.18% of Download Monitor install base)


Common Weakness Enumeration


CWE-200 Exposure of Sensitive Information to an Unauthorized Actor


Distribution by Website Rank

The diagram provides a graphic representation of the correlation between the occurrence of CVE-2022-45354 and the relative popularity of websites


Details

  • Published - Jan 8, 2024
  • Updated - Jan 8, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)





Countries

United States69 websites



Germany73 websites
Japan27 websites
GB24 websites
France21 websites
Italy20 websites
Spain12 websites
Switzerland11 websites
Canada9 websites
Poland8 websites

TLDs

.com128 websites
.de49 websites
.org23 websites
.co.uk16 websites
.it12 websites
.jp10 websites
.net9 websites
.es8 websites
.co.jp7 websites
.com.br7 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


Geographical Distribution

The distribution of websites across the globe that are exposed to CVE-2022-45354 through included software libraries and plugins.



References


Websites affected by CVE-2022-45354

Top websites that are affected by CVE-2022-45354. Please click on the "Contact us" button above to get more information.
DomainCountryRankContacts
***.*******.com United States**,***
***.****.org United States**,***
***.es Spain***,***
***.*********.fr France***,***
***.************.**.jp Japan***,***
********************.org United States***,***
**********.com United States***,***
***.**********.**.uk GB***,***
***.****.es Spain***,***
***.*****.org United States***,***
See full domain list