Boletines de Vulnerabilidades

Episode 87: Vulnerabilities Affect Discount Rules for WooCommerce Plugin, ModSecurity & Windows


Información sobre el sistema

   
Software afectado Wordpress

Descripción

Vulnerabilities were recently patched in the Discount Rules for WooCommerce plugin installed on over 40,000 WordPress sites. Developers from OWASP Core Rule Set said ModSecurity v3 is exposed to denial of service exploits, though the maintainers of ModSecurity reject that claim. A severe vulnerability called Zerologon in Windows Netlogon was patched in August; this bug […]

More info:

https://www.wordfence.com/blog/2020/09/episode-87-vulnerabilities-affect-discount-rules-for-woocommerce-plugin-modsecurity-windows/

Identificadores estándar

Propiedad Valor
CVE CVE-2020-1472.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2020-09-24

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT