Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-2551

The Duplicator WordPress plugin before 1.4.7 discloses the url of the a backup to unauthenticated visitors accessing the main installer endpoint of the plugin, if the installer script has been run once by an administrator, allowing download of the full site backup without authenticating.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.527
EPSS Ranking 97.8%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-2551


Contact Us

Shodan ® - All rights reserved