CVE-2023-7232

The Backup and Restore WordPress WordPress plugin through 1.45 does not protect some log files containing sensitive information such as site configuration etc, allowing unauthenticated users to access such data
Configurations

Configuration 1 (hide)

cpe:2.3:a:wpbackitup:backup_and_restore_wordpress:*:*:*:*:*:wordpress:*:*

History

07 May 2025, 01:29

Type Values Removed Values Added
CWE NVD-CWE-noinfo
References () https://wpscan.com/vulnerability/323fef8a-aa17-4698-9a02-c12d1d390763/ - () https://wpscan.com/vulnerability/323fef8a-aa17-4698-9a02-c12d1d390763/ - Exploit, Third Party Advisory
CPE cpe:2.3:a:wpbackitup:backup_and_restore_wordpress:*:*:*:*:*:wordpress:*:*
First Time Wpbackitup
Wpbackitup backup And Restore Wordpress

21 Nov 2024, 08:45

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
References () https://wpscan.com/vulnerability/323fef8a-aa17-4698-9a02-c12d1d390763/ - () https://wpscan.com/vulnerability/323fef8a-aa17-4698-9a02-c12d1d390763/ -

26 Mar 2024, 12:55

Type Values Removed Values Added
Summary
  • (es) El complemento Backup and Restore WordPress de WordPress hasta la versión 1.45 no protege algunos archivos de registro que contienen información confidencial, como la configuración del sitio, etc., lo que permite a usuarios no autenticados acceder a dichos datos.

26 Mar 2024, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-26 05:15

Updated : 2025-05-07 01:29


NVD link : CVE-2023-7232

Mitre link : CVE-2023-7232

CVE.ORG link : CVE-2023-7232


JSON object : View

Products Affected

wpbackitup

  • backup_and_restore_wordpress