WP Database Backup – Unlimited Database & Files Backup by Backup for WP, 96f997b292e2c68707719129186681dfeee90f5e
- CVE, Research URL
- Home page URL
- Published on
- Apr 24, 2019
- Research Description
- WP Database Backup – Unlimited Database & Files Backup by Backup for WP [wp-database-backup] < 5.2 WP Database Backup < 5.2 - Unauthenticated OS Command Injection The WP Database Backup plugin for WordPress is vulnerable to OS Command Injection in versions before 5.2 via the mysqldump function. This vulnerability allows unauthenticated attackers to execute arbitrary commands on the host operating system.
- Affected versions
-
max 5.2.
- Status
-
vulnerable