Remote Code Execution Vulnerability in BackupBuddy Plugin by iThemes
CVE-2013-2744

Currently unrated

Key Information:

Vendor

Wordpress

Vendor
CVE Published:
2 April 2013

What is CVE-2013-2744?

The BackupBuddy plugin version 2.2.25 for WordPress contains a vulnerability in the importbuddy.php file, which can allow remote attackers to extract sensitive configuration information. This occurs through the phpinfo function invoked during a specific step 0 operation. As a result, unauthorized users may gain insight into the site's configuration, potentially leading to further exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.