WF-f373a1d5-3d7e-4a0a-af03-28ca6ce6a170-all-in-one-wp-migration

All-in-One WP Migration <= 7.14 - Unauthenticated Backup Download

mediumUse of Insufficiently Random Values
5.9
CVSS Score
5.9
CVSS Score
medium
Severity
7.15
Patched in
1464d
Time to patch

Description

The All-in-One WP Migration plugin for WordPress is vulnerable to unauthenticated arbitrary back-up downloads due to insufficient filename randomization that made it possible for unauthenticated attackers to brute force back-up filenames in unique situations in versions up to, and including, 7.14. This would make it possible for unauthenticated attackers to discover information from files contained in the back-ups that could be used to aid further attacks or lead to simply sensitive information disclosure.

CVSS Vector Breakdown

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
High
Confidentiality
None
Integrity
None
Availability

Technical Details

Affected versions<7.15
PublishedJanuary 20, 2020
Last updatedJanuary 22, 2024

Check if your site is affected.

Run a free security audit to detect vulnerable plugins, outdated versions, and misconfigurations.