Get a Pentest and security assessment of your IT network.

Cyber Security

WordPress Page Builder Plugin Bugs Threaten 1 Million Sites with Full Takeover

Page Builder by SiteOrigin, a WordPress plugin with a million active installs, harbors two flaws that can allow full site takeover. Both bugs can lead to cross-site request forgery (CSRF) and reflected XSS (XSS) If exploited, both bugs could be used to redirect a site s administrator, create a new administrative user account or inject a backdoor on a site. Wordfence researchers assigned both flaws a severity rating of 8.8 out of 10, but no CVEs have yet been assigned.

Source: https://threatpost.com/wordpress-page-builder-bugs-takeover/155659/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security