Vulnerability Bulletins

2 Million Users Affected by Vulnerability in All in One SEO Pack


System information

   
Affected software Wordpress

Description

On July 10, 2020, our Threat Intelligence team discovered a vulnerability in All In One SEO Pack, a WordPress plugin installed on over 2 million sites. This flaw allowed authenticated users with contributor level access or above the ability to inject malicious scripts that would be executed if a victim accessed the wp-admin panel’s ‘all […]

More info:

https://www.wordfence.com/blog/2020/07/2-million-users-affected-by-vulnerability-in-all-in-one-seo-pack/

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2020-07-18
Ministerio de Defensa
CNI
CCN
CCN-CERT