Vulnerability Bulletins

Episode 109: This Attack Will Make You Want to Stop Using SMS 2FA


System information

   
Affected software Wordpress

Description

An attack shows how a SMS enablement service was used to bypass SMS 2FA for $16. We discuss the recently patched vulnerabilities in Elementor affecting over 7 million WordPress sites and how easily these cross-site scripting vulnerabilities can be exploited. We also talk about the SQL Injection vulnerabilities in Tutor LMS. The data center fire […]

More info:

https://www.wordfence.com/blog/2021/03/episode-109-this-attack-will-make-you-want-to-stop-using-sms-2fa/

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2021-03-23
Ministerio de Defensa
CNI
CCN
CCN-CERT