Saijo George

Curated by Saijo George

Read more

thursday11 Feb 2021

Vulnerability Discovered in Responsive Menu < = 4.0.0 – 4.0.3

https://www.wordfence.com

Responsive Menu WordPress plugin has 100,000+ active installations and can be used to easily create mobile friendly menus. With versions prior to 4.0.3, there were multiple vulnerabilities discovered by researchers. The first flaw made it possible for authenticated attackers with low-level permissions to upload arbitrary files and ultimately achieve remote code execution. The remaining two flaws made it possible for attackers to forge requests that would modify the settings of the plugin and again upload arbitrary files that could lead to remote code execution. All three vulnerabilities could lead to a site takeover, which could have consequences including backdoors, spam injections, malicious redirects, and other malicious activities.

The issue has been fixed in Version 4.0.4 which is available now from the WordPress Plugin Repo.

 

General


I love tl;dr Marketing because I can get all the latest SEO news and trends in one spot without having to read lengthy articles. I really look forward to the daily emails to see what's new in our industry!

Vulnerability Discovered in YITH WooCommerce Ajax Product Filter< 3.11.1 1 - General News

Ryan Mews SEO Manager Merkle