The Easy WP SMTP zero-day (CVE-2020-35234) leaks sensitive log data and allows attackers to takeover admin accounts. Detectify scans for this and other vulnerabilities affecting the most popular WordPress plugins.
The post How attackers exploit the WordPress Easy-WP-SMTP zero-day appeared first on Detectify Blog.
The post How attackers exploit the WordPress Easy-WP-SMTP zero-day appeared first on Detectify Blog.
Source: detectify
Source Link: https://blog.detectify.com/2020/12/21/how-attackers-exploit-the-wordpress-easy-wp-smtp-zero-day/