{
    "CVE_data_meta": {
        "ID": "CVE-2021-24155",
        "ASSIGNER": "contact@wpscan.com",
        "STATE": "PUBLIC",
        "TITLE": "Backup Guard < 1.6.0 - Authenticated Arbitrary File Upload"
    },
    "data_format": "MITRE",
    "data_type": "CVE",
    "data_version": "4.0",
    "generator": "WPScan CVE Generator",
    "affects": {
        "vendor": {
            "vendor_data": [
                {
                    "vendor_name": "Unknown",
                    "product": {
                        "product_data": [
                            {
                                "product_name": "WordPress Backup and Migrate Plugin \u2013 Backup Guard",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_affected": "<",
                                            "version_name": "1.6.0",
                                            "version_value": "1.6.0"
                                        }
                                    ]
                                }
                            }
                        ]
                    }
                }
            ]
        }
    },
    "description": {
        "description_data": [
            {
                "lang": "eng",
                "value": "The WordPress Backup and Migrate Plugin \u2013 Backup Guard WordPress plugin before 1.6.0 did not ensure that the imported files are of the SGBP format and extension, allowing high privilege users (admin+) to upload arbitrary files, including PHP ones, leading to RCE."
            }
        ]
    },
    "references": {
        "reference_data": [
            {
                "refsource": "CONFIRM",
                "url": "https://wpscan.com/vulnerability/d442acac-4394-45e4-b6bb-adf4a40960fb",
                "name": "https://wpscan.com/vulnerability/d442acac-4394-45e4-b6bb-adf4a40960fb"
            },
            {
                "refsource": "MISC",
                "name": "http://packetstormsecurity.com/files/163382/WordPress-Backup-Guard-1.5.8-Shell-Upload.html",
                "url": "http://packetstormsecurity.com/files/163382/WordPress-Backup-Guard-1.5.8-Shell-Upload.html"
            },
            {
                "refsource": "MISC",
                "name": "http://packetstormsecurity.com/files/163623/WordPress-Backup-Guard-Authenticated-Remote-Code-Execution.html",
                "url": "http://packetstormsecurity.com/files/163623/WordPress-Backup-Guard-Authenticated-Remote-Code-Execution.html"
            }
        ]
    },
    "problemtype": {
        "problemtype_data": [
            {
                "description": [
                    {
                        "value": "CWE-434 Unrestricted Upload of File with Dangerous Type",
                        "lang": "eng"
                    }
                ]
            }
        ]
    },
    "credit": [
        {
            "lang": "eng",
            "value": "Nguyen Van Khanh - SunCSR (Sun* Cyber Security Research)  "
        }
    ],
    "source": {
        "discovery": "UNKNOWN"
    }
}