CVE-2006-5705
MEDIUM 6.0EPSS 3.5%
Multiple directory traversal vulnerabilities in plugins/wp-db-backup.php in WordPress before 2.0.5 allow remote authenticated users to read or overwrite arbitrary files via directory traversal sequences in the (1) backup and (2) fragment parameters in a GET request.
- CVSS v2.0
- 6.0 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P - EPSS
- 3.46% chance of exploitation in the next 30 days, 88th percentile
- Nuclei
- low
- Published
- 2006-11-04
- Updated
- 2024-08-07