WordPress Simple-Backup 2.7.11 Arbitrary File Deletion and Download
Vulnerability Description
WordPress Simple-Backup 2.7.11 contains multiple vulnerabilities that allow unauthenticated attackers to delete arbitrary files and download sensitive files by manipulating the delete_backup_file and download_backup_file parameters in tools.php. Attackers can exploit insufficient input validation using directory traversal techniques to access wp-config.php, database dumps, and other sensitive files, or delete critical files .htaccess to expose backup directories.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-20076
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- PizzaHatHacker [A] gmail [.] com
References
Affected Vendor
ChrisHurst
View all reports →