Boletines de Vulnerabilidades

Critical Vulnerabilities in the WP Lead Plus X WordPress Plugin


Información sobre el sistema

   
Software afectado Wordpress

Descripción

On March 3, 2020, our Threat intelligence team discovered a number of vulnerabilities in WP Lead Plus X, a WordPress plugin with over 70,000 installations designed to allow site owners to create landing and squeeze pages on their sites. These vulnerabilities allowed an authenticated attacker with minimal permissions, such as a subscriber, to create or […]

More info:

https://www.wordfence.com/blog/2020/04/critical-vulnerabilities-in-the-wp-lead-plus-x-wordpress-plugin/

Identificadores estándar

Propiedad Valor
CVE CVE-2020-11508 and CVE-2020-11509.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2020-04-09

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT