Description
WordPress Plugin Backup, Restore and Migrate WordPress Sites With the XCloner is prone to a vulnerability that lets attackers delete arbitrary files because the application fails to properly verify user-supplied input. An attacker can exploit this vulnerability to delete arbitrary files in the context of the webserver process. WordPress Plugin Backup, Restore and Migrate WordPress Sites With the XCloner version 3.1.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.1.5 or latest
References
Related Vulnerabilities
WordPress Plugin Bitcoin Faucet Cross-Site Scripting (1.0.12)
WordPress 2.8.5 Multiple Vulnerabilities (2.8 - 2.8.5)
Joomla! Core 1.7.x Cross-Site Scripting (1.7.0 - 1.7.3)
WordPress Plugin Jigoshop-Store Toolkit Privilege Escalation (1.3.7)
WordPress Plugin Weather for us-animated weather widget Crypto Mining (1.8)