Source |
IT Security Guru |
Identifiant |
1706503 |
Date de publication |
2020-05-13 09:50:31 (vue: 2020-05-13 10:08:16) |
Titre |
1 million sites threatened by WordPress plugin bug |
Texte |
Severe CSRF to XSS bugs open the door to code execution and complete website compromise. Page Builder by SiteOrigin, a WordPress plugin with a million active installs that's used to build websites via a drag-and-drop function, harbors two flaws that can allow full site takeover. According to researchers at WordPress, both security bugs can lead […]
|
Notes |
|
Envoyé |
Oui |
Condensat |
according active allow appeared both bug bugs build builder can code complete compromise csrf door drag drop execution first flaws full function guru harbors installs lead million open page plugin post researchers security severe site siteorigin sites takeover that threatened two used website websites wordpress xss |
Tags |
Guideline
|
Stories |
|
Move |
|