We promise, we won't send you any spam. You can easily unsubscribe.

wordpress sites under attack via zero-day in abandoned plugin

Total Donations plugin are advised to delete the plugin from their servers to prevent hackers from exploiting in its code and take over affected sites..   Attacks using this zero-day have been observed over the week by security experts from Defiant, the company behind Wordfence firewall plugin for WordPress..   The zero-day affects all versions of Total Donations, commercial plugin that site owners have bought from CodeCanyon over the past years, have used to gather and manage donations from their respective userbases..   According to Defiant Mikey Veenstra, the plugin's code contains several design flaws that expose the plugin and WordPress site, as whole, to manipulation, even from unauthenticated users..   By any remote unauthenticated attacker, In security alert published on Friday, the plugin contains AJAX endpoint that can be queried..   AJAX endpoint resides in one of the plugin's files, meaning that deactivating the plugin does not eliminate the threat, only removing the in its entirety will safeguard sites from exploitation..   The developer's site appears to have gone inactive around May 2018, and CodeCanyon product listing has been deactivated about the time after countless of users reported that they had not received plugin updates for several bugs they reported..   Total Donations zero-day has received CVE-2019-6703 identifier.   the plugin is most installed on active sites with large userbases that could have afforded commercial plugin in the first place, and.   Brave browser can now show ads, and soon you'll get 70% of money CNET..   Read more
Report
Related items:
how to use godaddy w...
READ MORE

how to use godaddy with wordpress: the ultimate guide to install wordpress on godaddy in 2024

mastering wordpress:...
READ MORE

mastering wordpress: a guide to troubleshooting common errors

Dynamic vs Static QR...
READ MORE

Dynamic vs Static QR code?

what is the slug on ...
READ MORE

what is the slug on wordpress ? exploring the seo benefits and slug in wordpress in 2024

mainwp version 5 by ...
READ MORE

mainwp version 5 by the numbers: a monumental update

php wordpress develo...
READ MORE

php wordpress developer at updraftplus at updraft wp software ltd • wordpress job

what is wordpress?...
READ MORE

what is wordpress?

wpeka wordpress plug...
READ MORE

wpeka wordpress plugins affiliate program

how to uninstall wor...
READ MORE

how to uninstall wordpress from hostgator

strattic - faster wo...
READ MORE

strattic - faster wordpress in one click

top 20 reliable word...
READ MORE

top 20 reliable wordpress development plugins

wordpress » how to ...
READ MORE

wordpress » how to install a free theme the easy way

how to install wordp...
READ MORE

how to install wordpress theme from zip file

user profile...
READ MORE

user profile

how to add google se...
READ MORE

how to add google search in a wordpress site (the easy way

responsive photo col...
READ MORE

responsive photo collage plugin for wordpress

WordPressRead.com