Skip to main content

Vendor/product archive

wp-dbmanager_project / wp-dbmanager CVEs

Beta · best-effort

4 CVEs tagged to wp-dbmanager_project / wp-dbmanager0 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2022-2354

Published Aug 15, 2022

The WP-DBManager WordPress plugin before 2.80.8 does not prevent administrators from running arbitrary commands on the server in multisite installations, where only super-administ…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2014-8336

Published Jan 5, 2018

The "Sql Run Query" panel in WP-DBManager (aka Database Manager) plugin before 2.7.2 for WordPress allows remote attackers to read arbitrary files by leveraging failure to suffici…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8335

Published Jan 5, 2018

(1) wp-dbmanager.php and (2) database-manage.php in the WP-DBManager (aka Database Manager) plugin before 2.7.2 for WordPress place credentials on the mysqldump command line, whic…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-8334

Published Oct 31, 2014

The WP-DBManager (aka Database Manager) plugin before 2.7.2 for WordPress allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) $back…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1