Get a Pentest and security assessment of your IT network.

News

WordPress vulnerable to Cross-Site Request Forgery in Connection Information Not yet fixed with last Update

WordPress vulnerable to Cross-Site Request Forgery in Connection Information Not yet fixed with the last Update. CSRF issue has been found in Summer of Pwnage hack event which held between July 1-29. This weakness can be utilized to overwrite the FTP or SSH association settings of the infected WordPress site. An assailant can utilize this issue to trap an Administrator into signing into the attackers FTP or. SSH server, revealing his/her login credentials to the attacker. This issue exists in the method request_filesystem_credentials().”]

Source: https://gbhackers.com/wordpress-vulnerable-to-cross-site-request-forgery-in-connection-information-not-yet-fixed-with-last-update/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks