Vulnerability Details CVE-2019-25224
The WP Database Backup plugin for WordPress is vulnerable to OS Command Injection in versions before 5.2 via the mysqldump function. This vulnerability allows unauthenticated attackers to execute arbitrary commands on the host operating system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.262
EPSS Ranking 96.1%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2019-25224
-
cpe:2.3:a:wpseeds:wp_database_backup:1.0.0
-
cpe:2.3:a:wpseeds:wp_database_backup:2.0
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1.1
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1.2
-
cpe:2.3:a:wpseeds:wp_database_backup:2.1.3
-
cpe:2.3:a:wpseeds:wp_database_backup:2.2
-
cpe:2.3:a:wpseeds:wp_database_backup:2.3
-
cpe:2.3:a:wpseeds:wp_database_backup:2.4
-
cpe:2.3:a:wpseeds:wp_database_backup:3.0
-
cpe:2.3:a:wpseeds:wp_database_backup:3.1
-
cpe:2.3:a:wpseeds:wp_database_backup:3.2
-
cpe:2.3:a:wpseeds:wp_database_backup:3.3
-
cpe:2.3:a:wpseeds:wp_database_backup:3.4
-
cpe:2.3:a:wpseeds:wp_database_backup:3.5
-
cpe:2.3:a:wpseeds:wp_database_backup:3.6
-
cpe:2.3:a:wpseeds:wp_database_backup:3.7
-
cpe:2.3:a:wpseeds:wp_database_backup:3.8
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.1
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.2
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.3
-
cpe:2.3:a:wpseeds:wp_database_backup:3.9.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.5
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.6
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.7
-
cpe:2.3:a:wpseeds:wp_database_backup:4.3.8
-
cpe:2.3:a:wpseeds:wp_database_backup:4.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.4.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.4.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.5
-
cpe:2.3:a:wpseeds:wp_database_backup:4.5.6
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.1
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.2
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.3
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.4
-
cpe:2.3:a:wpseeds:wp_database_backup:4.6.5
-
cpe:2.3:a:wpseeds:wp_database_backup:5.0
-
cpe:2.3:a:wpseeds:wp_database_backup:5.1
-
cpe:2.3:a:wpseeds:wp_database_backup:5.1.1
-
cpe:2.3:a:wpseeds:wp_database_backup:5.1.2