WordPress and Annotum for Education, Science,Journal Publishing
4.7K views | +0 today
Follow
WordPress and Annotum for Education, Science,Journal Publishing
WordPress and Annotum for Education, Science,Professional Journal Publishing with multiple authors and peer-reviews as also Knol to WP Migration...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
Scoop.it!

WordPress plugin used by millions sports critical site-hijacking flaw | CyberSecurity | Blogging

WordPress plugin used by millions sports critical site-hijacking flaw | CyberSecurity | Blogging | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it

Another popular Yoast Wordpress plugin has been found sporting a critical vulnerability that can be exploited by attackers to take over control of the site.

A week ago it was the WordPress SEO plugin, which is actively used on more than a million of WP sites. This time it's the company's Google Analytics plugin, which has apparently been downloaded around 7 million times.

According to the researcher who discovered the issue, Jouko Pynnönen of Finland-based Klikki Oy, the vulnerability "allows an unauthenticated attacker to store arbitrary HTML, including JavaScript, in the WordPress administrator’s Dashboard on the target system. The JavaScript will be triggered when an administrator views the plug-in’s settings panel. No further user interaction is required."


Learn more:


http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing


Gust MEES's insight:

Another popular Yoast Wordpress plugin has been found sporting a critical vulnerability that can be exploited by attackers to take over control of the site.

A week ago it was the WordPress SEO plugin, which is actively used on more than a million of WP sites. This time it's the company's Google Analytics plugin, which has apparently been downloaded around 7 million times.

According to the researcher who discovered the issue, Jouko Pynnönen of Finland-based Klikki Oy, the vulnerability "allows an unauthenticated attacker to store arbitrary HTML, including JavaScript, in the WordPress administrator’s Dashboard on the target system. The JavaScript will be triggered when an administrator views the plug-in’s settings panel. No further user interaction is required."


Learn more:


http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing


No comment yet.
Scooped by Gust MEES
Scoop.it!

Run WordPress SEO by Yoast on your website? You need to update it | CyberSecurity

Run WordPress SEO by Yoast on your website? You need to update it | CyberSecurity | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it
A serious vulnerability was found in one of the most popular WordPress plugins, and guess what? It got fixed really quickly. :) All that remains is for you to apply the update on your web server.
Gust MEES's insight:

A serious vulnerability was found in one of the most popular WordPress plugins, and guess what? It got fixed really quickly. :) All that remains is for you to apply the update on your web server.


No comment yet.