Record summary

CVE-2023-7165 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.

Description

The JetBackup WordPress plugin before 2.0.9.9 doesn't use index files to prevent public directory listing of sensitive directories in certain configurations, which allows malicious actors to leak backup files.

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 9, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

JetBackup

Default status: unaffected

CVE ListBefore 2.0.9.9affected

Default status: unknown

CVE ListBefore 2.0.9.9affected

Nuclei templates

1
ProjectDiscoveryHIGHJetBackup <= 2.0.9.7 - Sensitive Information Exposure via Directory ListingCVSS 7.5

JetBackup WordPress plugin <= 2.0.9.9 does not use index files to prevent directory listing in certain configurations, letting malicious actors leak backup files, exploit requires access to the web server.

Impact

Attackers can access and leak sensitive backup files, potentially leading to data exposure and security breaches.

Remediation

Update to version 2.0.9.9 or later that implements index files to prevent directory listing.

WeaknessesCWE-548
Authorspussycat0x
Template tagscvecve2023wordpresswp-pluginjetbackupwpunauth
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:a:developer177:jetbackup:*:*:*:*:*:wordpress:*:*
Shodan: http.html:"/wp-content/plugins/backup/"
FOFA: body="/wp-content/plugins/backup/"
Google: inurl:"/wp-content/uploads/jetbackup/"

Source: ProjectDiscovery

References

2