Get a Pentest and security assessment of your IT network.

Cyber Security

WordPress Plugin Flaw Allows Attackers to Send Forged Emails

The high-severity flaw in the Email Subscribers & Newsletters plugin by Icegram affects more than 100,000 WordPress websites. A remote, unauthenticated attacker can exploit the flaw to send forged emails to all recipients. The flaw (CVE-2020-5780) ranks 7.5 out of 10 on the CVSS scale, making it high severity. The issue stems from an email forgery/spoofing vulnerability in the class-es-newsletters.php class.

Source: https://threatpost.com/wordpress-plugin-flaw/159172/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security