CVE-2014-8605
The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla!
MEDIUM
xcloner
Description
The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! stores database backup files with predictable names under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to a backup file in administrators/backups/.
Sévérité
5.0
Moyenne · CVSS 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 5.0 (v2.0) |
Produit et versions
- Produit
- xcloner
- Corrigée dans
- Non précisée
- Publiée
- 10/06/2015
- Modifiée
- 17/06/2026
- CWE
- CWE-264
Versions concernées
- xcloner — 3.1.1 – 3.1.1
- xcloner — 3.5.1 – 3.5.1
Sources
- NVD CVE-2014-8605 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC