All 4 CVE vulnerabilities found in FileOrganizer – WordPress File Manager, with AI-generated Chinese analysis, references, and POCs.
Vendor: softaculous
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-11010 | FileOrganizer <= 1.1.4 - Authenticated (Administrator+) Local JavaScript File Inclusion CWE-22 | 7.2 | High | 2024-12-07 |
| CVE-2024-7985 | FileOrganizer <= 1.0.9 - Authenticated (Subscriber+) Arbitrary File Upload CWE-434 | 7.5 | High | 2024-10-29 |
| CVE-2024-5599 | FileOrganizer <= 1.0.7 - Sensitive Information Exposure via Directory Listing CWE-922 | 7.5 | High | 2024-06-07 |
| CVE-2024-2324 | FileOrganizer and FileOrganizer Pro <= 1.0.6 - Authenticated Stored Cross-Site Scripting CWE-79 | 4.4 | Medium | 2024-05-02 |
All 4 known CVE vulnerabilities affecting FileOrganizer – WordPress File Manager with full Chinese analysis, references, and POCs where available.