CVE · Medium

CVE-2024-6210 — Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More [duplicator] < 1.5.10

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-6210 Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More [duplicator] < 1.5.10 Exposure of Sensitive Information to an Unauthorized Actor Medium 5.3 < 1.5.10 1.5.10 2024-07-10

CVE-2024-6210

The Duplicator plugin has a security flaw that allows unauthorized individuals to discover the complete directory path for each instance, potentially enabling them to exploit related weaknesses or streamline their reconnaissance efforts. This vulnerability affects all versions prior to 1.5.9. The disclosed path itself is not particularly valuable on its own.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.