Vulnerabilities (CVE)

Filtered by vendor Softaculous Subscribe
Filtered by product Backuply
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-0842 1 Softaculous 1 Backuply 2024-02-15 N/A 7.5 HIGH
The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Denial of Service in all versions up to, and including, 1.2.5. This is due to direct access of the backuply/restore_ins.php file and. This makes it possible for unauthenticated attackers to make excessive requests that result in the server running out of resources.
CVE-2024-0697 1 Softaculous 1 Backuply 2024-02-01 N/A 4.9 MEDIUM
The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.2.3 via the node_id parameter in the backuply_get_jstree function. This makes it possible for attackers with administrator privileges or higher to read the contents of arbitrary files on the server, which can contain sensitive information.