Vulnerability in Wordpress plugin BackWPup before v3.4.2 allows possible brute forcing of backup file for download.
The product makes files or directories accessible to unauthorized actors, even though they should not be.
Link | Tags |
---|---|
https://wordpress.org/plugins/backwpup/#developers | release notes product third party advisory |
http://www.vapidlabs.com/advisory.php?v=201 | third party advisory exploit |