QID 730256
Date Published: 2021-11-17
QID 730256: WordPress Snap Creek Duplicator and Duplicator Pro Plugins Directory Traversal Vulnerability
The Duplicator plugin helps site administrators migrate and copy WordPress sites. Part of this functionality involves exporting database and file content into portable archives. When an administrator creates a new copy of their site, Duplicator lets them download the generated files from their WordPress dashboard.
The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the file parameter to duplicator_download or duplicator_init.
Affected Versions:
Duplicator plugin before version 1.3.28
Duplicator Pro before version 3.8.7.1
QID Detection Logic:(Unauthenticated)
This QID checks for vulnerable version of Duplicator plugin by sending a directory traversal payload to the affected endpoint.
Successful exploitation of the vulnerability may allow remote attacker to view sensitive files including WordPress configuration and /etc/passwd file in Linux systems.
CVEs related to QID 730256
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| NA |
|