Want more timely Centmin Mod News Updates?
Become a Member

Wordpress Serious Wordpress Vulnerability Revealed

Discussion in 'Blogs & CMS usage' started by BamaStangGuy, Jun 27, 2018.

  1. BamaStangGuy

    BamaStangGuy Active Member

    669
    192
    43
    May 25, 2014
    Ratings:
    +272
    Local Time:
    5:40 AM
    WARNING: WordPress File Delete to Code Execution

    WordPress is the most popular CMS on the web. According to w3tech, it is used by approximately 30% of all websites1. This wide adoption makes it an interesting target for cyber criminals. In this blog post we are going to introduce an authenticated arbitrary file deletion vulnerability in the WordPress core that can lead to attackers executing arbitrary code. The vulnerability was reported 7 months ago to the WordPress security team but still remains unpatched. The long time elapsed since the initial reporting without any patch or concrete plans has led us to the decision to make it public.

     
  2. eva2000

    eva2000 Administrator Staff Member

    58,908
    12,490
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,122
    Local Time:
    8:40 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
    thanks for the heads up, though you'd already be in a compromising position to be able to take advantage of this vulnerability
     
  3. Jon Snow

    Jon Snow Active Member

    917
    188
    43
    Jun 30, 2017
    Ratings:
    +293
    Local Time:
    7:40 AM
    Nginx 1.13.9
    MariaDB 10.1.31
    I never allow people to sign up to my wordpress install and I only give accounts out to people I trust. Wordpress generates a strong password so I'm not too worried about this.
     
  4. eva2000

    eva2000 Administrator Staff Member

    58,908
    12,490
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,122
    Local Time:
    8:40 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
    Yeah being a sole single owner/admin managing servers and sites is alot easier. Though in Wordpress case I am sure it's pretty common to have more than one Author role assigned user to a Wordpress install. Guess this is where the vulnerability opens up.

    If you have more than one Author/owner on Wordpress blog, probably good idea to enable a two factor authentication (2FA) plugin for user logins too in case those accounts get compromised.
     
  5. eva2000

    eva2000 Administrator Staff Member

    58,908
    12,490
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,122
    Local Time:
    8:40 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
  6. eva2000

    eva2000 Administrator Staff Member

    58,908
    12,490
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,122
    Local Time:
    8:40 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
    looks like the reveal forced WP's hands WordPress 4.9.7 Security and Maintenance Release

     
  7. eva2000

    eva2000 Administrator Staff Member

    58,908
    12,490
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,122
    Local Time:
    8:40 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
    and more at WordPress Update – 4.9.7 Security & Maintenance Release