11 million websites use a WordPress tool that hackers abuse.

Elementor Pro, a WordPress tool used by over 11 million websites, is being exploited by threat actors.

White Frame Corner
White Frame Corner

The security bug allows authorised users like shop customers or site admins to alter site settings, including administrator settings, risking website takeover.

White Frame Corner
White Frame Corner

Due to failed WooCommerce module access control, attackers could change WordPress database options without validation.

White Frame Corner
White Frame Corner

NinTechNet, a cybersecurity firm, blogged that the vulnerability was found in March 2023.

White Frame Corner
White Frame Corner

Attackers used the security bug to reroute users to malicious webpages or post backdoors to the breached site. 

White Frame Corner
White Frame Corner

These backdoors may allow attackers to send more data to compromised sites. These files could let intruders take over WordPress and steal data or install malware.

White Frame Corner
White Frame Corner

Elementor Pro users should update their webpages immediately, but the free version was not impacted by the flaw.

White Frame Corner
White Frame Corner

Swipe up for more Amazing  Technology updates

White Frame Corner
White Frame Corner