CVE-2014-8605

Vulnérabilités

CVE-2014-8605

The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla!

MEDIUM xcloner

The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! stores database backup files with predictable names under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to a backup file in administrators/backups/.

5.0 Moyenne · CVSS 2.0

AV:N/AC:L/Au:N/C:P/I:N/A:N

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDMEDIUM 5.0 (v2.0)
Produit
xcloner
Corrigée dans
Non précisée
Publiée
10/06/2015
Modifiée
17/06/2026
CWE
CWE-264
  • xcloner — 3.1.1 – 3.1.1
  • xcloner — 3.5.1 – 3.5.1

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC