CVE-2006-5705
EPSS 4.9%Published: 11/4/2006Modified: 5/27/2026
Description
Multiple directory traversal vulnerabilities in plugins/wp-db-backup.php in WordPress before 2.0.5 allow remote authenticated users to read or overwrite arbitrary files via directory traversal sequences in the (1) backup and (2) fragment parameters in a GET request.
Affected packages (1)
- Debian/wordpressfrom 0, < 2.0.5-0.1