Access violation vulnerability in Migration, Backup, Staging – WPvivid 0.9.91

The WPvivid Backup Plugin for WordPress, versions up to and including 0.9.90, is vulnerable to unauthorized access and modification of data. This means that someone with an account on the WordPress website can create a new staging site and fresh WordPress installation on the server, and control the connection to the database. This could give them full control of the website, as the new database they control shares the same file system as the victim website.

Detected in:

Migration, Backup, Staging – WPvivid fixed vulnerable versions: >= * < 0.9.91

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.