Website Baker Backup Module Security Bypass Vulnerability
BID:50734
Info
Website Baker Backup Module Security Bypass Vulnerability
| Bugtraq ID: | 50734 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 27 2010 12:00AM |
| Updated: | Mar 27 2010 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Website Baker Website Baker 2.8.1 Website Baker Website Baker 2.8 Website Baker Website Baker 2.6.5 Website Baker Website Baker 2.6.4 Website Baker Website Baker 2.6.1 Website Baker Website Baker 2.6 Website Baker Website Baker 2.5.2 Website Baker Website Baker 2.8 |
| Not Vulnerable: | |
Discussion
Website Baker Backup Module Security Bypass Vulnerability
Website Baker is prone to a security-bypass vulnerability.
Successful exploits may allow attackers to bypass security restrictions and download the backup.
Website Baker 2.8.1 and prior are vulnerable.
Website Baker is prone to a security-bypass vulnerability.
Successful exploits may allow attackers to bypass security restrictions and download the backup.
Website Baker 2.8.1 and prior are vulnerable.
Exploit / POC
Website Baker Backup Module Security Bypass Vulnerability
An attacker can exploit this issue through a browser.
An attacker can exploit this issue through a browser.
Solution / Fix
Website Baker Backup Module Security Bypass Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Website Baker Backup Module Security Bypass Vulnerability
References:
References:
- Security Vulnerability (Backup Module in WB Core) (Website Baker)
- Website Baker Homepage (Website Baker)