Boletines de Vulnerabilidades

Vulnerabilities Patched in WP Page Builder


Información sobre el sistema

   
Software afectado Wordpress

Descripción

On February 15, 2021, the Wordfence Threat Intelligence team began the responsible disclosure process for several vulnerabilities in WP Page Builder, a plugin installed on over 10,000 sites. These vulnerabilities allowed any logged-in user, including subscribers, to access the page builder’s editor and make changes to existing posts on the site by default. Additionally, any […]

More info:

https://www.wordfence.com/blog/2021/04/vulnerabilities-patched-in-wp-page-builder/

Identificadores estándar

Propiedad Valor
CVE CVE-2021-24207 and CVE-2021-24208.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2021-04-10

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT