I know a bunch of people on here use this backup plugin, please upgrade the plugin ASAP.
Quote:
|
WP-DBmanager has a confirmed, serious security issue that makes it possible for anyone (even non-users) to download the wp-config.php file of WordPress websites that use the plugin, thereby get full access to the entire MySQL database where WordPress is installed. Needless to say, this can be exploited in many ways ? and it can be a nightmare scenario for site owners.
|
http://andreasviklund.com/share/secu...for-wordpress/