BackupBuddy < 3.0 - Authentication Bypass

2013-03-24 00:00
Rob Armstrong

Strategic Overview

Status
Patched in 3.0
Affected PluginBackupBuddy
Affected Version< 3.0
CVSS9.8Critical
CVECVE-2013-2741
View all BackupBuddy vulnerabilities

Vulnerability Overview

importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress does not require that authentication be enabled, which allows remote attackers to obtain sensitive information, or overwrite or delete files, via vectors involving a (1) direct request, (2) step=1 request, (3) step=2 or step=3 request, or (4) step=7 request.

Technical Analysis

REMEDIATION: Update to version 3.0, or a newer patched version --- IDENTIFIER: CWE-287 (Improper Authentication) When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C