PT-2024-15229 · WordPress · Wp Staging

Dmitry Ignatyev

·

Published

2024-01-29

·

Updated

2024-02-05

·

CVE-2023-7204

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions WP STAGING WordPress Backup plugin versions prior to 3.2.0
Description The issue allows access to cache files during the cloning process. This provides unauthorized access to sensitive information.
Recommendations For versions prior to 3.2.0, update to version 3.2.0 or later to resolve the issue.

Exploit

Fix

Exposure of Resource to Wrong Sphere

Weakness Enumeration

Related Identifiers

CVE-2023-7204

Affected Products

Wp Staging