Netskope Threat Labs

SERVER-WEBAPP WordPress Download Manager plugin arbitrary PHP file upload attempt

IPS-NPA

1 SID: 64166

Detects an attempt to upload PHP files through the Download Manager WordPress plugin's unprotected endpoint. Uploaded scripts become webshells that give operators control of the site, and the flaw saw heavy scanning after disclosure.

No cross-references or related blog posts found for this signature.