CVE-2024-4469
Description
The WP STAGING WordPress Backup Plugin WordPress plugin before 3.5.0 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.
CWE
- (none)
Affected
- Unknown / WP STAGING WordPress Backup Plugin — v=0 <3.5.0 [affected]
CVSS
- (none)
References
- https://wpscan.com/vulnerability/d6b1270b-52c0-471d-a5fb-507e21b46310/ exploit, vdb-entry, technical-description
Source
cvelistV5-main/cves/2024/4xxx/CVE-2024-4469.json