Attempt to access to SQL backup folder
Description
WP-DB-Backup creates a backup storage path under the wp-contents directory of the wordpress installation. An attacker could bruteforce the name of the backup folder in order to download the backup.
Default
configuration
Profiles
High
Medium
Low
Internet
Action
Pass
Pass
Pass
Pass
Alarm Level
Minor
Minor
Minor
Minor
References
URL:
http://www.vapid.dhs.org/advisory.php?v=81
Available since
ASQ v5.0.0
Protects
WordPress Third-Party Plugins and Themes Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
100 last CVE
CVE-2015-7806
CVE-2015-5308
CVE-2014-9179
CVE-2014-8955
CVE-2014-8877
Risk level
Low