CVE detail
CVE-2023-5105 — CVE-2023-5105
Published 2023-12-04 · Modified 2026-06-17 · Vendor najeebmedia · Product frontend_file_manager_plugin · Source nvd
MEDIUM
severity
CVSS-derived band
0.0105
EPSS probability
exploitation probability, 30d
61.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The Frontend File Manager Plugin WordPress plugin before 22.6 has a vulnerability that allows an Editor+ user to bypass the file download logic and download files such as `wp-config.php`
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References