laciikee

VIRUS LOG

Sep 5th, 2022
189
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.87 KB | None | 0 0
  1. WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
  2.  
  3. WordPress <= 5.8.2 - Authenticated Object Injection in Multisites
  4.  
  5. WordPress <= 5.8.2 - SQL Injection (SQLi) vulnerability
  6.  
  7. WordPress <= 5.8.2 - SQL Injection (SQLi) vulnerability
  8.  
  9. WordPress <= 5.8.2 - Stored Cross-Site Scripting (XSS) vulnerability
  10.  
  11. WordPress < 5.8 - Plugin Confusion vulnerability
  12.  
  13. WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
  14.  
  15. WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
  16.  
  17. WordPress core <= 5.8 - Data Exposure via REST API vulnerability
  18.  
  19. WordPress core <= 5.8 - Authenticated Cross-Site Scripting (XSS) vulnerability
  20.  
  21. WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
  22.  
  23. WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
  24.  
  25. WordPress core 4.7-5.7 - XML External Entity (XXE) vulnerability
  26.  
  27. WordPress <= 5.5.1 - Mishandled deserialization requests vulnerability
  28.  
  29. WordPress <= 5.5.1 - Mishandling Embeds From Disabled Sites On a Multisite Network vulnerability
  30. All in One SEO
  31. WordPress All in One SEO plugin <= 4.1.5.2 - Authenticated SQL Injection (SQLi) vulnerability
  32.  
  33. WordPress All in One SEO plugin <= 4.1.5.2 - Authenticated Privilege Escalation vulnerability
  34.  
  35. WordPress All In One SEO Pack plugin <= 4.1.0.1 - Authenticated Remote Code Execution (RCE) vulnerability
  36.  
  37. WordPress All in One SEO plugin <= 4.2.3.1 - Multiple Cross-Site Request Forgery (CSRF) vulnerabilities
  38.  
  39. Cookie Notice
  40. WordPress Cookie Notice & Compliance for GDPR / CCPA plugin <= 2.1.3 - Stored Cross-Site Scripting (XSS) vulnerability
  41.  
  42. Loco Translate
  43. WordPress Loco Translate plugin <= 2.6.0 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
  44.  
  45. WordPress Loco Translate plugin <= 2.5.3 - Authenticated PHP Code Injection vulnerability
  46.  
  47. Themify Portfolio Post
  48. WordPress Themify Portfolio Post plugin <= 1.1.6 - Reflected Cross-Site Scripting (XSS) vulnerability
  49.  
  50. WP Cerber Security, Anti-spam & Malware Scan
  51. WordPress WP Cerber Security plugin <= 8.9.5 - Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability
  52.  
  53. WordPress WP Cerber Security plugin <= 9.0 - User Enumeration Bypass vulnerability
  54.  
  55. Change default database table prefix
  56. Restrict access to files and directories
  57. Block access to sensitive files
  58. Block unauthorized access to wp-config.php
  59. Disable PHP execution in cache directories
  60. Block directory browsing
  61. Disable file editing in WordPress Dashboard
  62. Turn off pingbacks
  63. Disable scripts concatenation for WordPress admin panel
  64. Block author scans
  65. Block access to .htaccess and .htpasswd
  66. Block access to potentially sensitive files
  67. Enable bot protection
  68. Forbid execution of PHP scripts in the wp-content/uploads directory
  69. Forbid execution of PHP scripts in the wp-includes directory
  70. Block unauthorized access to xmlrpc.php
Advertisement
Add Comment
Please, Sign In to add comment