CVE Database /
CVE-2024-6210
CVE · Medium
CVE-2024-6210 — Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More [duplicator] < 1.5.10
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2024-6210
|
Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More [duplicator] < 1.5.10 |
Exposure of Sensitive Information to an Unauthorized Actor |
Medium
5.3
|
< 1.5.10
|
1.5.10 |
2024-07-10 |
—
|
CVE-2024-6210
The Duplicator plugin has a security flaw that allows unauthorized individuals to discover the complete directory path for each instance, potentially enabling them to exploit related weaknesses or streamline their reconnaissance efforts. This vulnerability affects all versions prior to 1.5.9. The disclosed path itself is not particularly valuable on its own.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings