Site icon WinCert

A dangerous WordPress plug-in may cause a lot of damage

<p>The latest warning on a major security risk comes on the topic of a very simple WordPress plug-in which&comma; if a user is willing and only slightly skillful&comma; may be used to take over websites created by other users&period; In order to stay safe&comma; the version of the plug-in you own must not be older than version 2&period;0&period;22&period;<&sol;p>&NewLine;<p><img class&equals;"alignnone wp-image-2977 size-full" title&equals;"WordPress plug-in" src&equals;"https&colon;&sol;&sol;www&period;wincert&period;net&sol;wp-content&sol;uploads&sol;2019&sol;02&sol;wordpress&lowbar;background&period;jpg" alt&equals;"WordPress plug-in" width&equals;"640" height&equals;"341" &sol;><&sol;p>&NewLine;<p>The vulnerability in the plug-in has only recently been discovered and even though it was quickly fixed with the update&comma; users were not unaffected by this vulnerability&period; This very popular plug-in is used by site administrators to put social sharing buttons into articles or comments&period; And yes&comma; those include the most popular ones such as Facebook and Twitter&period;<&sol;p>&NewLine;<p>Security researchers have discovered that this enables users who create a new account to access settings designed for administrators in ways that this plug-in was not created to do and thus&comma; this allows them to take over other websites and other tools on the web&period; Since this plug-in has been downloaded more times than WordPress has been aware of&comma; it goes to show that the effects of it have been affecting a greater number of websites than it was at first presumed&period;<&sol;p>&NewLine;<p>It is important to note that sufficient warnings have been issued and every user who keeps its application up to date should be safe from any serious attacks and consequences&comma; thanks to the security experts who reacted promptly and created an appropriate updated version of the plug-in&period;<&sol;p>&NewLine;

Exit mobile version