Vulnerability Bulletins

Two Vulnerabilities Patched in Facebook for WordPress Plugin


System information

   
Affected software Wordpress

Description

On December 22, 2020, our Threat Intelligence team responsibly disclosed a vulnerability in Facebook for WordPress, formerly known as Official Facebook Pixel, a WordPress plugin installed on over 500,000 sites. This flaw made it possible for unauthenticated attackers with access to a site’s secret salts and keys to achieve remote code execution through a deserialization […]

More info:

https://www.wordfence.com/blog/2021/03/two-vulnerabilities-patched-in-facebook-for-wordpress-plugin/

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2021-03-27
Ministerio de Defensa
CNI
CCN
CCN-CERT