WordPress iThemes Security (Better WP Security) Insecure Backup/Logfile Generation (access rights)

Posted by Sysdream Labs on Apr 21

WordPress iThemes Security (Better WP Security) Insecure Backup/Logfile Generation (access rights)
==================================================================================================

Description
===========

A vulnerability has been found in iThemes Security backup function that may allow attackers to gain access to
backup/log files.

By default, when using the “database backup on filesystem” feature, iThemes Security…