Database Backup for WordPress, CVE-2006-4208
- CVE, Research URL
- Home page URL
- Application
- Published on
- Aug 18, 2006
- Research Description
- Directory traversal vulnerability in wp-db-backup.php in Skippy WP-DB-Backup plugin for WordPress 1.7 and earlier allows remote authenticated users with administrative privileges to read arbitrary files via a .. (dot dot) in the backup parameter to edit.php.
- Affected versions
-
Min -, max 2.4.
- Status
-
vulnerable