A critical vulnerability was discovered in two plugins developed by miniOrange. The affected plugins, miniOrange’s Malware Scanner and Web Application Firewall, contained a severe privilege escalation flaw that could allow unauthenticated attackers to gain administrative access to WordPress sites. This discovery underscores website administrators’ ongoing risks and challenges in securing their digital assets against sophisticated […]
The post Discontinued WordPress Plugin Flaw Exposes Websites to Cyber Attacks appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.
Free Webinar : Mitigating Vulnerability & 0-day Threats
Alert Fatigue that helps no one as security teams need to triage 100s of vulnerabilities.
:
- The problem of vulnerability fatigue today
- Difference between CVSS-specific vulnerability vs risk-based vulnerability
- Evaluating vulnerabilities based on the business impact/risk
- Automation to reduce alert fatigue and enhance security posture significantly
AcuRisQ, that helps you to quantify risk accurately:
Source: gbHackers
Source Link: https://gbhackers.com/discontinued-wordpress-plugin-flaw/