Boletines de Vulnerabilidades

Episode 94: Hosting Provider Exposed 63 Million Customer Records


Información sobre el sistema

   
Software afectado Wordpress

Descripción

A hosting provider exposed over 63 million customer records via an open elastic search database containing verbose logs with plain-text username/password credentials for numerous WordPress, Magento and other sites. We also talk about the security updates in WordPress 5.5.2/5.5.3 and the accidental 5.5.3-alpha autoupdate. We talk about object injection vulnerabilities like the one discovered in […]

More info:

https://www.wordfence.com/blog/2020/11/episode-94-hosting-provider-exposed-63-million-customer-records/

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Data
1.0 Advisory issued 2020-11-10
Ministerio de Defensa
CNI
CCN
CCN-CERT