CVE-2022-31474
Summary
| CVE | CVE-2022-31474 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-03-13 14:15:00 UTC |
| Updated | 2023-03-16 20:05:00 UTC |
| Description | Directory Traversal vulnerability in iThemes BackupBuddy plugin 8.5.8.0 - 8.7.4.1 versions. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Application |
Ithemes |
Backupbuddy |
All |
All |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| WordPress Backup Buddy plugin 8.5.8.0 - 8.7.4.1 - Unauthenticated Path Traversal / Arbitrary File Download vulnerability - Patchstack |
MISC |
patchstack.com |
|
| WordPress Vulnerability Report, Special Edition – September 6, 2022: BackupBuddy |
MISC |
ithemes.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 150570 WordPress BackupBuddy Plugin: Arbitrary File Read Vulnerability (CVE-2022-31474)
- 730611 WordPress BackupBuddy Plugin Arbitrary File Read Vulnerability