Access violation vulnerability in BackWPup – WordPress Backup & Restore Plugin 5.5.0

The BackWPup plugin for WordPress has a security issue that could allow unauthorized access to data. This is because the plugin does not have a proper check in place for a certain action. This means that someone with Subscriber-level access or higher could potentially access the name of a back-up file while it is being created. While this information may not seem valuable, it could be used by attackers in certain situations to try and access the contents of the back-up through a brute force attack.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.