Arnos Toolbox develops WordPress download management plugins that handle user-facing file-retrieval functionality, where the recurring vulnerability signal centers on SQL-injection flaws in query construction. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Arnos Toolbox over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-1646HIGH SQL injection vulnerability in wp-download.php in the WP-Download 1.2 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the dl_id parameter. | Apr 2, 2008 | 7.5 | 29 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Arnos Toolbox.
Media articles that mention a CVE ID that affects a product developed by Arnos Toolbox — matched by CVE ID, not by vendor name.