Boletines de Vulnerabilidades

Vulnerability Patched in Accordion Plugin


Información sobre el sistema

   
Software afectado Wordpress

Descripción

A few weeks ago, our Threat Intelligence team discovered a vulnerability in Accordion, a WordPress plugin installed on over 30,000 sites. This flaw allowed any authenticated user with subscriber-level and above permissions the ability to import a new accordion and inject malicious Javascript as part of the accordion. We initially reached out to the plugin’s […]

More info:

https://www.wordfence.com/blog/2020/04/vulnerability-patched-in-accordion-plugin/

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2020-04-16

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT