Vulnerability Bulletins

Episode 87: Vulnerabilities Affect Discount Rules for WooCommerce Plugin, ModSecurity & Windows


System information

   
Affected software Wordpress

Description

Vulnerabilities were recently patched in the Discount Rules for WooCommerce plugin installed on over 40,000 WordPress sites. Developers from OWASP Core Rule Set said ModSecurity v3 is exposed to denial of service exploits, though the maintainers of ModSecurity reject that claim. A severe vulnerability called Zerologon in Windows Netlogon was patched in August; this bug […]

More info:

https://www.wordfence.com/blog/2020/09/episode-87-vulnerabilities-affect-discount-rules-for-woocommerce-plugin-modsecurity-windows/

Standar resources

Property Value
CVE CVE-2020-1472.

Version history

Version Comments Date
1.0 Advisory issued 2020-09-24
Ministerio de Defensa
CNI
CCN
CCN-CERT