Description
WordPress Plugin DB Backup is prone to a directory traversal vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin DB Backup version 4.5 is vulnerable; prior versions may also be affected.
Remediation
Edit the source code to ensure that input is properly verified or disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin WP Bannerize 'ajax_sorter.php' SQL Injection (2.8.7)
WordPress Plugin WP Easy Gallery Cross-Site Scripting (4.1.3)
WordPress Plugin RSS Post Importer Unspecified Vulnerability (2.5.0)
Oracle Application Server Other Vulnerability (CVE-2002-0560)
Chamilo Improper Privilege Management Vulnerability (CVE-2022-27421)