vendor:
Backup
by:
Erik David Martin
7.5
CVSS
HIGH
Local File Inclusion
22
CWE
Product Name: Backup
Affected Version From: 2.3.9
Affected Version To: 2.3.9
Patch Exists: NO
Related CWE: N/A
CPE: a:supsystic:backup:2.3.9
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Ubuntu 16.04.6 LTS / WordPress 5.4.2
2020
WordPress Plugin Supsystic Backup 2.3.9 – Local File Inclusion
Changing the path when downloading the stored backup allows an attacker to both read and delete internal system files (LFI). The 'Delete' tab also allows an attacker to delete files on the server.
Mitigation:
Ensure that the application is not vulnerable to directory traversal attacks by validating user input and restricting access to sensitive files.