Vulnerability Details CVE-2019-25224
The WP Database Backup plugin for WordPress is vulnerable to OS Command Injection in versions before 5.2 via the mysqldump function. This vulnerability allows unauthenticated attackers to execute arbitrary commands on the host operating system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.027
EPSS Ranking 85.4%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2019-25224
-
cpe:2.3:a:wpseeds:wp_database_backup:1.0.0
-
cpe:2.3:a:wpseeds:wp_database_backup:2.0
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1.1
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1.2
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1.3
-
cpe:2.3:a:wpseeds:wp_database_backup:2.2
-
cpe:2.3:a:wpseeds:wp_database_backup:2.3
-
cpe:2.3:a:wpseeds:wp_database_backup:2.4
-
cpe:2.3:a:wpseeds:wp_database_backup:3.0
-
cpe:2.3:a:wpseeds:wp_database_backup:3.1
-
cpe:2.3:a:wpseeds:wp_database_backup:3.2
-
cpe:2.3:a:wpseeds:wp_database_backup:3.3
-
cpe:2.3:a:wpseeds:wp_database_backup:3.4
-
cpe:2.3:a:wpseeds:wp_database_backup:3.5
-
cpe:2.3:a:wpseeds:wp_database_backup:3.6
-
cpe:2.3:a:wpseeds:wp_database_backup:3.7
-
cpe:2.3:a:wpseeds:wp_database_backup:3.8
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.1
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.2
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.3
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.5
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.6
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.7
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.8
-
cpe:2.3:a:wpseeds:wp_database_backup:4.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.4.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.4.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.5
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.6
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.5
-
cpe:2.3:a:wpseeds:wp_database_backup:5.0
-
cpe:2.3:a:wpseeds:wp_database_backup:5.1
-
cpe:2.3:a:wpseeds:wp_database_backup:5.1.1
-
cpe:2.3:a:wpseeds:wp_database_backup:5.1.2