WF-f373a1d5-3d7e-4a0a-af03-28ca6ce6a170-all-in-one-wp-migration
All-in-One WP Migration <= 7.14 - Unauthenticated Backup Download
mediumUse of Insufficiently Random Values
5.9
CVSS Score
5.9
CVSS Score
medium
Severity
7.15
Patched in
1464d
Time to patch
Description
The All-in-One WP Migration plugin for WordPress is vulnerable to unauthenticated arbitrary back-up downloads due to insufficient filename randomization that made it possible for unauthenticated attackers to brute force back-up filenames in unique situations in versions up to, and including, 7.14. This would make it possible for unauthenticated attackers to discover information from files contained in the back-ups that could be used to aid further attacks or lead to simply sensitive information disclosure.
CVSS Vector Breakdown
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NAttack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
High
Confidentiality
None
Integrity
None
Availability
Technical Details
Affected versions
<7.15PublishedJanuary 20, 2020
Last updatedJanuary 22, 2024
Affected pluginall-in-one-wp-migration
Check if your site is affected.
Run a free security audit to detect vulnerable plugins, outdated versions, and misconfigurations.