CVE-2022-31474

HIGH EXPLOITED IN THE WILD NUCLEI

iThemes BackupBuddy <8.7.4.1 - Path Traversal

Title source: llm

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in iThemes BackupBuddy allows Path Traversal.This issue affects BackupBuddy: from 8.5.8.0 through 8.7.4.1.

Nuclei Templates (1)

BackupBuddy - Local File Inclusion
HIGHby aringo

Scores

CVSS v3 7.5
EPSS 0.9225
EPSS Percentile 99.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

VulnCheck KEV 2023-01-12
InTheWild.io 2022-09-07
CWE
CWE-22
Status published
Products (1)
ithemes/backupbuddy 8.5.8.0 - 8.7.5.0
Published Mar 13, 2023
Tracked Since Feb 18, 2026