Loading...
Loading...
importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress does not require that authentication be enabled, which allows remote attackers to obtain sensitive information, or overwrite or delete files, via vectors involving a (1) direct request, (2) step=1 request, (3) step=2 or step=3 request, or (4) step=7 request.
April 2, 2013
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-2741
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.