Akeeba backup access control bypass

Description

Sucuri reported a vulnerability in Akeeba Backup for Joomla! that could allow an attacker to list and download backups created with the Akeeba extension. This vulnerability is present on Joomla websites running Akeeba that have the "Enable front-end and remote backup" option activated.

Remediation

Upgrade to the latest version of Akeeba Backup for Joomla!.

References