Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in W3 Eden, Inc. Download Manager allows Stored XSS.This issue affects Download Manager: from n/a through 3.2.84.
                
            References
                    Configurations
                    History
                    21 Mar 2025, 19:13
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time | W3eden download Manager W3eden | |
| CPE | cpe:2.3:a:w3eden:download_manager:*:*:*:*:free:wordpress:*:* | 
12 Mar 2025, 14:27
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:wpdownloadmanager:download_manager:*:*:*:*:*:wordpress:*:* | |
| First Time | Wpdownloadmanager Wpdownloadmanager download Manager | |
| References | () https://patchstack.com/database/vulnerability/download-manager/wordpress-download-manager-plugin-3-2-84-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory | 
Information
                Published : 2024-03-19 15:15
Updated : 2025-03-21 19:13
NVD link : CVE-2024-29114
Mitre link : CVE-2024-29114
CVE.ORG link : CVE-2024-29114
JSON object : View
Products Affected
                w3eden
- download_manager
CWE
                
                    
                        
                        CWE-79
                        
            Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
