CVE-2014-8335: Wp-Dbmanager Project Wp-Dbmanager

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

(1) wp-dbmanager.php and (2) database-manage.php in the WP-DBManager (aka Database Manager) plugin before 2.7.2 for WordPress place credentials on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.

Affected products

Published 2018-01-05. Last modified 2026-06-17.