Vulnerability Bulletins

Severe Vulnerabilities Patched in Simple 301 Redirects by BetterLinks Plugin


System information

   
Affected software Wordpress

Description

On April 8, 2021, the Wordfence Threat Intelligence team initiated the responsible disclosure process for several vulnerabilities discovered in Simple 301 Redirects by BetterLinks, a WordPress plugin installed on over 300,000 sites. One of these flaws made it possible for unauthenticated users to update redirects for the site allowing an attacker to redirect all site […]

More info:

https://www.wordfence.com/blog/2021/05/severe-vulnerabilities-patched-in-simple-301-redirects-by-betterlinks-plugin/

Standar resources

Property Value
CVE CVE-2021-24352 ,CVE-2021-24353 ,CVE-2021-24354 ,CVE-2021-24356 and CVE-2021-24355.

Version history

Version Comments Date
1.0 Advisory issued 2021-05-28
Ministerio de Defensa
CNI
CCN
CCN-CERT