vendor:
BulletProof Security WordPress Plugin
by:
Ron Jost (Hacker5preme)
7.5
CVSS
HIGH
Sensitive Information Disclosure
200
CWE
Product Name: BulletProof Security WordPress Plugin
Affected Version From: <= 5.1
Affected Version To:
Patch Exists: NO
Related CWE: CVE-2021-39327
CPE: a:bulletproof_security_project:bulletproof_security:5.1
Tags: exposure,packetstorm,cve,cve2021,wordpress
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Nuclei References:
https://packetstormsecurity.com/files/164420/wpbulletproofsecurity51-disclose.txt, https://www.wordfence.com/vulnerability-advisories/#CVE-2021-39327, https://nvd.nist.gov/vuln/detail/CVE-2021-39327, http://packetstormsecurity.com/files/164420/WordPress-BulletProof-Security-5.1-Information-Disclosure.html, https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=2591118bulletproof-security&new=2591118bulletproof-security&sfp_email=&sfph_mail=
Nuclei Metadata: {'max-request': 2, 'framework': 'wordpress', 'vendor': 'ait-pro', 'product': 'bulletproof_security'}
Platforms Tested: Ubuntu 18.04
2021
WordPress Plugin BulletProof Security 5.1 – Sensitive Information Disclosure
The BulletProof Security WordPress plugin is vulnerable to sensitive information disclosure due to a file path disclosure in the publicly accessible ~/db_backup_log.txt file which grants attackers the full path of the site, in addition to the path of database backup files. This affects versions up to, and including, 5.1.
Mitigation:
Upgrade to the latest version of the BulletProof Security WordPress plugin.