WordPress Plugin Vulnerabilities

XCloner - Backup and Restore < 3.1.5 - Authenticated Path Traversal

Description

Authenticated users are able to perform directory listings at any location available to the Wordpress user, leaking filenames of previous backups. This was found in XCloner - Backup and Restore version 3.1.4, but may have been introduced in earlier versions. Attackers can leverage directory listings to leak otherwise secret filepaths to previous backups, allowing them to acquire full backup contents, since the backup download is not authenticated.

Proof of Concept

Affects Plugins

References

Miscellaneous

Submitter
ldionmarcil
Submitter website
Submitter twitter
Verified
No

Timeline

Publicly Published
2016-12-31 (about 9 years ago)
Added
2017-01-03 (about 9 years ago)
Last Updated
2020-09-25 (about 5 years ago)

Other