CVE-2019-25727 Details
Description
WordPress Plugin ad manager wd 1.0.11 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensitive files by manipulating the path parameter. Attackers can send GET requests to the edit.php endpoint with export=export_csv and a malicious path parameter to read arbitrary files like wp-config.php accessible to the web server.
An arbitrary file download vulnerability has been identified in the WordPress Plugin Ad Manager WD version 1.0.11. This vulnerability allows unauthenticated attackers to download sensitive files by manipulating the path parameter. Exploitation involves sending GET requests to the edit.php endpoint with the export parameter set to export_csv, along with a malicious path that targets files accessible to the web server, such as wp-config.php.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jun 4, 2026CISA-ADP
Assessed Jun 4, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://web-dorado.com/products/wordpress-ad-manager-wd.html | [email protected] | Permission RequiredVendor |
| https://www.exploit-db.com/exploits/46252 | [email protected] | Exploit |
| https://www.vulncheck.com/advisories/wordpress-plugin-ad-manager-wd-arbitrary-file-download | [email protected] | AdvisoryBundleExploit |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Web-Dorado Ad Manager WD | <= 1.0.11 (semver) |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 22, 2026 | CVE Translated | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 4, 2026 | New CVE Received | [email protected] |
Volerion