No Follow All External Links 2.1.0 - 2.3.0 - Backdoor
mediumThe No Follow All External Links plugin for WordPress is vulnerable to a backdoor in versions 2.1.0 - 2.3.0. This is due to the criminal actor purchasing the plugin and adding the backdoor themselves. This makes it possible for authenticated attackers to inject content into the vulnerable plugin, commonly used in the p...
- CVSS:
- 5.3
- Affected:
- 2.1.0 – 2.3.0
- Fix:
- No patched version reported
- Disclosed:
- Dec 28, 2017