WordPress and Annotum for Education, Science,Journal Publishing
4.7K views | +1 today
Follow
WordPress and Annotum for Education, Science,Journal Publishing
WordPress and Annotum for Education, Science,Professional Journal Publishing with multiple authors and peer-reviews as also Knol to WP Migration...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
Scoop.it!

Over 1 million WordPress websites at risk from SQL injection | CyberSecurity

Over 1 million WordPress websites at risk from SQL injection | CyberSecurity | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it
A critical security flaw in a plugin called WP-Slimstat is to blame.


Over one million websites running the WordPress content management system are potentially at risk of being hijacked due to a critical vulnerability exposed in the WP-Slimstat plugin.

On Tuesday, a security advisory posted by researcher Marc-Alexandre Montpas from security firm Sucuri said the "very high risk" vulnerability found in versions of WP-Slimstat 3.9.5 and lower could lead to cyberattackers being able to break the plugin's "secret" key, perform an SQL injection and take over a target website.


Learn more:


http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing


Gust MEES's insight:
A critical security flaw in a plugin called WP-Slimstat is to blame.


Over one million websites running the WordPress content management system are potentially at risk of being hijacked due to a critical vulnerability exposed in the WP-Slimstat plugin.

On Tuesday, a security advisory posted by researcher Marc-Alexandre Montpas from security firm Sucuri said the "very high risk" vulnerability found in versions of WP-Slimstat 3.9.5 and lower could lead to cyberattackers being able to break the plugin's "secret" key, perform an SQL injection and take over a target website.


Learn more:


http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing


No comment yet.
Scooped by Gust MEES
Scoop.it!

Thousands of WordPress sites affected by zero-day exploit | CyberSecurity

Thousands of WordPress sites affected by zero-day exploit | CyberSecurity | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it
Thousands of websites are at risk of being exploited by a previously undisclosed vulnerability in a WordPress plugin, which researchers say could be used to inject malicious code into websites.

The flaw exists in Fancybox, a popular image displaying tool, through which Sucuri researchers say malware or any other script can be added to a vulnerable site.

"We can confirm that this plugin has a serious vulnerability," the researchers wrote. "It's being actively exploited in the wild, leading to many compromised websites," the researchers wrote.
Gust MEES's insight:

Thousands of websites are at risk of being exploited by a previously undisclosed vulnerability in a WordPress plugin, which researchers say could be used to inject malicious code into websites.

The flaw exists in Fancybox, a popular image displaying tool, through which Sucuri researchers say malware or any other script can be added to a vulnerable site.

"We can confirm that this plugin has a serious vulnerability," the researchers wrote. "It's being actively exploited in the wild, leading to many compromised websites," the researchers wrote.


No comment yet.