Researchers have announced the discovery of a critical security vulnerability affecting WordPress. This more specifically targets File Manager, a CMS plugin that counts more than 700,000 active installations to date. Of this figure, 52% of users would be affected, report the researchers. Sal Aguilar, a website security contractor, posted on Twitter a few hours ago about the vulnerability: “Oh shit !!! The vulnerability of WP File Manager is SERIOUS. It is spreading quickly and I see hundreds of sites getting infected. Malware is downloaded to /wp-content/plugins/wp-file-manager/lib/files ”. A security vulnerability of choice for hackers More specifically, the attacks in question allow malicious users to execute commands and scripts remotely on the websites of their victims – who use the File Manager plugin. Several researchers have indicated that the hackers seek to inject scripts, but also to protect vulnerable files so that they cannot benefit other groups with similar ambitions. Jérôme… read more