7.2
CVSSv3

CVE-2023-7002

Published: 23/12/2023 Updated: 29/12/2023
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

The Backup Migration plugin for WordPress is vulnerable to OS Command Injection in all versions up to, and including, 1.3.9 via the 'url' parameter. This vulnerability allows authenticated attackers, with administrator-level permissions and above, to execute arbitrary commands on the host operating system.

Vulnerable Product Search on Vulmon Subscribe to Product

backupbliss backup migration

Vendor Advisories

Check Point Reference: CPAI-2023-1536 Date Published: 12 Mar 2024 Severity: High ...