My site hacked and result scan display attack from your plugin.

Home Forums Product Support Forums Ajax Search Pro for WordPress Support My site hacked and result scan display attack from your plugin.

This topic contains 1 reply, has 2 voices, and was last updated by Ernest Marcinko Ernest Marcinko 5 years, 1 month ago.

Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts
  • #21343
    webbkk
    webbkk
    Participant

    Hi,

    My site hacked many time in FEB. And now still con’t fix it, I try scan my site from WPScans . The result display attack from your plugin. But I update your plugin to last version 4.14.6.

    Effect to my site.
    1. Can’t update plugin, WordPress new version.
    2. Some plugin crash.
    3. Can’t create, update, publish post or page.

    Please guide me for fix it.

    Thank you.

    Attachments:
    You must be logged in to view attached files.
    #21346
    Ernest Marcinko
    Ernest Marcinko
    Keymaster

    Hi,

    That vulnerability was fixed a very long time ago (over 3 years), and it is also impossible to exploit it within the latest WordPress versions (4.5 and further). The exploit was actually never tested to be working, and was never reported as an issue, it was only a potential threat, reported by a security expert, not published before the fix.
    I’m afraid the issue is probably unrelated to the plugin, you might have to ask a security expert about the problem.

    Best,
    Ernest Marcinko

    If you like my products, don't forget to rate them on codecanyon :)


Viewing 2 posts - 1 through 2 (of 2 total)

You must be logged in to reply to this topic.