Blog | G5 Cyber Security

Uninstall Now: Critical WordPress Plug-In Flaw Exploited

Hackers are exploiting a critical zero-day flaw in the WordPress plug-in Fancy Product Designer. Because a patch has not yet been released, the team urges users to uninstall the vulnerable plug-ins. The flaw allows remote code execution before attempting a full site takeover. The vulnerability is compatible with multiple platforms, an analyst at Defiant Inc. says. Defiant says it’s working with the plugin’s developer to mitigate the flaw and is working with him to fix it. In May, hackers targeted a water treatment plant in Florida by compromising a contractor’s website that ran on WordPress.”]

Source: https://www.databreachtoday.com/uninstall-now-critical-wordpress-plug-in-flaw-exploited-a-16785

Exit mobile version