PT-2024-36702 · WordPress · Wp Superbackup

Dave Jong

·

Published

2024-12-31

·

Updated

2024-12-31

·

CVE-2024-56068

CVSS v3.1

7.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WP SuperBackup versions through 2.3.3
Description The issue is related to Deserialization of Untrusted Data, which affects WP SuperBackup due to a deserialization vulnerability.
Recommendations For versions through 2.3.3, update to a version later than 2.3.3 to resolve the issue. As a temporary workaround, consider restricting the deserialization of untrusted data until a patch is available.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2024-56068

Affected Products

Wp Superbackup