
CVE-2024-56067
WP SuperBackup <= 2.3.3 - Missing Authorization to Unauthenticated Back-Up File Download
data-exfiltrationmisconfigurationvulnerability-analysis+2

WP SuperBackup <= 2.3.3 - Missing Authorization to Unauthenticated Back-Up File Download

Exploit for CVE-2024-12849, an arbitrary file read vulnerability in WordPress Error Log Viewer plugin. Downloads sensitive files via unauthenticated…