CVE-2014-8335: Wp-Dbmanager Project Wp-Dbmanager
High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.
(1) wp-dbmanager.php and (2) database-manage.php in the WP-DBManager (aka Database Manager) plugin before 2.7.2 for WordPress place credentials on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.
Affected products
- Wp-Dbmanager Project Wp-Dbmanager: up to and including 2.7.1
Published 2018-01-05. Last modified 2026-06-17.