CVE-2023-6271
HIGHDescription
The Backup Migration WordPress plugin before 1.3.6 stores in-progress backups information in easy to find, publicly-accessible files, which may allow attackers monitoring those to leak sensitive information from the site's backups.
Is your site exposed to CVE-2023-6271?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| backupbliss | backup_migration |
References
Exploits
Frequently Asked Questions
What is CVE-2023-6271? +
How severe is CVE-2023-6271? +
What products are affected by CVE-2023-6271? +
How do I check if I'm vulnerable to CVE-2023-6271? +
Related Vulnerabilities
The Backup Migration plugin for WordPress is vulnerable to unauthorized access of data due to insufficient path and file validation …
The Clone WordPress plugin before 2.4.3 uses buffer files to store in-progress backup informations, which is stored at a publicly …
Missing Authorization vulnerability in Migrate Clone allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Clone: from n/a through …
Missing Authorization vulnerability in Migrate Clone allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Clone: from n/a through …