CVE-2014-3114: Ezpz-One-Click-Backup Project Ezpz-One-Click-Backup

Critical severity, CVSS 9.8. EPSS: 3.5% chance of exploitation in the next 30 days.

The EZPZ One Click Backup (ezpz-one-click-backup) plugin 12.03.10 and earlier for WordPress allows remote attackers to execute arbitrary commands via the cmd parameter to functions/ezpz-archive-cmd.php.

Affected products

Published 2018-04-10. Last modified 2026-06-17.