Description
WordPress Plugin BackupBuddy is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin BackupBuddy version 2.2.28 is vulnerable; other versions may also be affected.
Remediation
Make sure that the file 'importbuddy.php' is removed from the root of the website
References
http://packetstormsecurity.com/files/120923/Backupbuddy-2.2.4-Sensitive-Data-Exposure.html
http://archives.neohapsis.com/archives/fulldisclosure/2013-03/0205.html
Related Vulnerabilities
WordPress Plugin My Chatbot Cross-Site Scripting (1.1)
IBMHttpServer Other Vulnerability (CVE-2006-3918)
WordPress Plugin Google Analytics Top Content Widget Cross-Site Scripting (1.5.6)
WordPress 3.9.x Multiple Vulnerabilities (3.9 - 3.9.29)
Oracle HTTP Server CVE-2020-2545 Vulnerability (CVE-2020-2545)