Vulnerability Active Exploitation Observed for CVE-2024-11972 (CVSS 9.8): WordPress Plugin Flaw Exposes 10,000+ Sites to Backdoor Attacks Ddos December 12, 2024 2 minutes read 0 Add as a preferredsource on Google π Access to This Vulnerability Report Requires Support This article is available to verified supporters only - contribute to read the full report Or choose another support option: Support via PayPal Support via BMC Share this article: Facebook Post LinkedIn Telegramcve-2024-11972-cvss-9-8-wordpress-plugin-flaw-exposes-10000-sites-to-backdoor-attacks/')" style="display: inline-flex; align-items: center; justify-content: center; gap: 8px; margin-right: 10px; margin-bottom: 10px; padding: 8px 16px; color: #ffffff; text-decoration: none; border-radius: 4px; font-size: 14px; font-weight: 500; transition: background-color 0.2s; background-color: #475569; border: none; cursor: pointer; font-family: inherit;"> Copy Link Related posts: CVE-2023-1912 Exposes Over 600,000 WordPress Sites to Cross-Site Scripting Attacks CVE-2023-6553 – Critical WordPress Plugin Flaw: 90,000 Websites at Risk of Takeover Under Attack: CVE-2023-6700 in ‘Cookie Information’ Plugin Threatens 100k WordPress Sites 40,000+ Sites Exposed: WordPress Plugin Update Critical – CVE-2024-27956 & CVE-2024-27954 Popular WordPress Real Estate Theme Vulnerable to Complete Site Takeover, No Patch Tags: CVE-2024-11972 Hunk Companion PHP dropper wordpress Leave a Reply Cancel replyYou must be logged in to post a comment.