Tag
Vulnerabilities
-

SQL Injection Discovered And Fixed In Slimstat Analytics and Paid Memberships Pro
During an internal audit of the Slimstat Analytics and Paid Memberships Pro plugins, we uncovered two SQL Injection vulnerabilities that could allow low-privileged users like subscribers to leak sensitive information from a site’s database. If exploited, the vulnerability could grant attackers access to privileged information from affected sites’ databases (e.g., usernames and hashed passwords). We…
-

How Malware Can Abuse the .htaccess File
Your site’s .htaccess file can be abused by attackers – what are the signs of compromise, what can be achieved with it, why they are targeted.
-

Vulnerabilities Found in the 3DPrint Premium Plugin
The premium version of the WordPress plugin 3DPrint is vulnerable to Cross Site Request Forgery (CSRF) and directory traversal attacks when the file manager functionality is enabled. These vulnerabilities allow an attacker to delete or get access to arbitrary files and directories on the affected sites, including sensitive files like the site configuration files, which…
-

Capture the Flag at WordCamp Europe 2022
During WordCamp Europe 2022, we ran a WordPress Capture The Flag (CTF) competition across four challenges. If you weren’t at the event you can still try it at home, and we detail the solutions in this post too.
-

Backdoor found in The School Management Pro plugin for WordPress
We uncovered a backdoor in “The School Management Pro” plugin for WordPress. Read on for the full details. We strongly recommend updating to the latest version (9.9.7).
-

Severe Vulnerability Fixed In UpdraftPlus 1.22.3
During an internal audit of the UpdraftPlus plugin, we uncovered an arbitrary backup download vulnerability that could allow low-privileged users like subscribers to download a site’s latest backups.
-

Backdoor Found in Themes and Plugins from AccessPress Themes
While investigating a compromised site we discovered some suspicious code in a theme by AccessPress Themes (aka Access Keys), a vendor with a large number of popular themes and plugins.
-

Severe Vulnerabilities Fixed in All In One SEO Plugin Version 4.1.5.3
During an internal audit of the All In One SEO plugin, we uncovered an SQL Injection vulnerability and a Privilege Escalation bug.
-

Security Issues Patched in Smash Balloon Social Post Feed Plugin
During an internal audit of the Smash Balloon Social Post Feed plugin (also known as Custom Facebook Feed), we discovered several sensitive AJAX endpoints were accessible to any users with an account on the vulnerable site, like subscribers. Some of these endpoints could enable Stored Cross-Site Scripting (XSS) attacks to occur.
-

Multiple vulnerabilities in WP Fastest Cache plugin
We uncovered multiple vulnerabilities during an internal audit of the WP Fastest Cache plugin. We strongly recommend that you update to the latest version of the plugin and have an established security solution on your site, such as Jetpack Security.