Sicherheitsupdates: Click2Shell-Lücke zum Kompromittieren von WordPress-WebsitesAlertheise security
Sicherheitsupdates: Click2Shell-Lücke zum Kompromittieren von WordPress-WebsitesAlertheise security Quelle: Heise Security Ticker
Sicherheitsupdates: Click2Shell-Lücke zum Kompromittieren von WordPress-WebsitesAlertheise security Quelle: Heise Security Ticker
The bug lets attackers automatically install and preview themes and could lead to remote code execution. The post WordPress Patches ‘Click2Shell’ Vulnerability appeared first on SecurityWeek.
Technical details and a proof-of-concept exploit have been published for a new WordPress cross-site request forgery (CSRF) vulnerability dubbed ‚Click2Shell‘ that affects the platform’s Core component. […]
Click2Shell: WordPress Flaw Enables RCE Chain Click2Shell is a vulnerability in WordPress Core that allows a logged-in administrator’s browser to be manipulated into installing and previewing a theme without explicit con