Description
WordPress Plugin File Browser, Manager, Backup (+ Database) is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently gain complete access to the plugins' core functionality. WordPress Plugin File Browser, Manager, Backup (+ Database) version 1.23 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Download Plugins and Themes from Dashboard Cross-Site Scripting (1.5.0)
Apache HTTP Server Resource Management Errors Vulnerability (CVE-2011-1928)
Envoy Proxy Reachable Assertion Vulnerability (CVE-2022-29228)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4938)