VYPR
Unrated severityNVD Advisory· Published Jun 10, 2015· Updated May 6, 2026

CVE-2014-8607

CVE-2014-8607

Description

The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! provides the MySQL username and password on the command line, which allows local users to obtain sensitive information via the ps command.

Affected products

2
  • Xcloner/Xcloner2 versions
    cpe:2.3:a:xcloner:xcloner:3.1.1:*:*:*:*:wordpress:*:*+ 1 more
    • cpe:2.3:a:xcloner:xcloner:3.1.1:*:*:*:*:wordpress:*:*
    • cpe:2.3:a:xcloner:xcloner:3.5.1:*:*:*:*:joomla\!:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.