Home Informasi Pengumuman Plugin Yang Rawan Hack

Plugin Yang Rawan Hack

Cetak Email
Penilaian User: / 3
TerburukTerbaik 
Sabtu, 11 Desember 2010 10:09

Dapat kami beritahukan info terbaru seputar plugin wordpress dan joomla yang saat ini rawan hack dan backdoor. Plugin/componen/version yang kami sebutkan di bawah ini berbahaya sesuai dengan versi yang telah kami sebutkan. Bila anda tetap menggunakan plugin-plugin di bahwa ini tidak masalah, namun perhatikan update status version dari plugin tersebut, bila masih memiliki versi yang sama dengan yang telah kami sebutkan, sebaiknya jangan di pakai.

 

  • !JoomlaComment 4.0 beta1
  • AWD Wall 1.5
  • BF Survey Pro
  • com_aclassf
  • com_agora
  • com_ajaxchat
  • com_album
  • com_alphauserpoints
  • com_artportal
  • com_booklibrary
  • com_cbresumebuilder
  • com_content
  • com_digifolio
  • com_djcatalog
  • com_facebook
  • com_fastball
  • com_foobla_suggestions
  • com_gameserver
  • com_groups
  • com_hbssearch
  • com_icrmbasic
  • com_idoblog
  • com_jabode
  • com_jbudgetsmagic
  • MusicGallery
  • milen Photo Gallery
  • Quick News
  • com_virtuemart
  • com_digistore
  • JvideoDirect
  • JEvent search plugin
  • Kunena
  • idoblog
  • ccnewsletter
  • Virtuemart 1.1.4
  • JBDiary
  • JbPublishDownFp
  • com_casino
  • Mochigames
  • JoomlaXML
  • JVClouds3D SWF module
  • perchagallery
  • econtentsite
  • Jvehicles
  • smestorage
  • JE Tooltip
  • Gift Exchange Beta
  • RokDownloads
  • AllVideos 3.1
  • communitypolls
  • Flash Magazine Deluxe
  • juliaportfolio
  • Scriptegrator
  • SqlReport
WordPress :
  • WordPress 2.8.1 (url) Remote Cross Site Scripting Exploit
  • WordPress Plugin My Category Order <= 2.8 SQL Injection Vulnerability
  • WordPress Privileges Unchecked in admin.php and Multiple Information
  • WordPress Plugin Related Sites 2.1 Blind SQL Injection Vulnerability
  • WordPress Plugin DM Albums 1.9.2 Remote File Disclosure Vulnerability
  • WordPress Plugin DM Albums 1.9.2 Remote File Inclusion Vuln
  • WordPress Plugin Photoracer 1.0 (id) SQL Injection
  • WordPress Plugin Lytebox (wp-lytebox) Local File Inclusion
  • WordPress Plugin fMoblog 2.1 (id) SQL Injection
  • WordPress MU < 2.7 ‘HOST’ HTTP Header XSS Vulnerability
  • WordPress plugin WP-Forum 1.7.8 Remote SQL Injection Vulnerability
  • WordPress Plugin Page Flip Image Gallery <= 0.2.2 Remote FD Vuln
  • WordPress Plugin e-Commerce <= 3.4 Arbitrary File Upload Exploit
  • WordPress Media Holder (mediaHolder.php id) SQL Injection Vuln
  • WordPress Plugin st_newsletter (stnl_iframe.php) SQL Injection Vuln
  • WordPress 2.6.1 (SQL Column Truncation) Admin Takeover Exploit
  • WordPress 2.6.1 SQL Column Truncation Vulnerability
  • WordPress Plugin Download Manager 0.2 Arbitrary File Upload Exploit
  • WordPress Plugin Spreadsheet <= 0.6 SQL Injection Vulnerability
  • WordPress Plugin Download (dl_id) SQL Injection Vulnerability
  • WordPress Plugin Sniplets 1.1.2 (RFI/XSS/RCE) Multiple Vulnerabilities
  • WordPress Photo album Remote SQL Injection Vulnerability
  • WordPress Plugin Simple Forum 1.10-1.11 SQL Injection Vulnerability
  • WordPress Plugin Simple Forum 2.0-2.1 SQL Injection Vulnerability
  • WordPress MU < 1.3.2 active_plugins option Code Execution Exploit
  • WordPress Plugin st_newsletter Remote SQL Injection Vulnerability
  • WordPress Plugin Wordspew Remote SQL Injection Vulnerability
  • WordPress Plugin dmsguestbook 1.7.0 Multiple Remote Vulnerabilities
  • WordPress Plugin WassUp 1.4.3 (spy.php to_date) SQL Injection Exploit
  • WordPress Plugin Adserve 0.2 adclick.php SQL Injection Exploit
  • WordPress plugin fGallery 2.4.1 fimrss.php SQL Injection Vulnerability
  • WordPress Plugin WP-Cal 0.3 editevent.php SQL Injection Vulnerability
  • WordPress plugin WP-Forum 1.7.4 Remote SQL Injection Vulnerability
  • WordPress Plugin Wp-FileManager 1.2 Remote Upload Vulnerability
  • WordPress <= 2.3.1 Charset Remote SQL Injection Vulnerability
  • WordPress Plugin PictPress <= 0.91 Remote File Disclosure Vulnerability
  • WordPress Plugin BackUpWordPress <= 0.4.2b RFI Vulnerability
  • WordPress Multiple Versions Pwnpress Exploitation Tookit (0.2pub)
  • WordPress 2.2 (wp-app.php) Arbitrary File Upload Exploit     21107 R
  • WordPress 2.2 (xmlrpc.php) Remote SQL Injection Exploit
  • WordPress 2.1.3 admin-ajax.php SQL Injection Blind Fishing Exploit
  • WordPress plugin myflash <= 1.00 (wppath) RFI Vulnerability
  • WordPress plugin wordTube <= 1.43 (wpPATH) RFI Vulnerability
  • WordPress plugin wp-Table <= 1.43 (inc_dir) RFI Vulnerability
  • WordPress Plugin myGallery <= 1.4b4 Remote File Inclusion Vulnerability
  • WordPress 2.1.2 (xmlrpc) Remote SQL Injection Exploit
  • WordPress <= 2.0.6 wp-trackback.php Remote SQL Injection Exploit
  • WordPress 2.0.5 Trackback UTF-7 Remote SQL Injection Exploit
  • Enigma 2 WordPress Bridge (boarddir) Remote File Include
  • WordPress <= 2.0.2 (cache) Remote Shell Injection Exploit
  • WordPress <= 1.5.1.3 Remote Code Execution eXploit (metasploit)
  • WordPress <= 1.5.1.3 Remote Code Execution 0-Day Exploit
  • WordPress <= 1.5.1.2 xmlrpc Interface SQL Injection Exploit
  • WordPress <= 1.5.1.1 SQL Injection Exploit
  • WordPress <= 1.5.1.1 “add new admin” SQL Injection Exploit
  • WordPress Blog HTTP Splitting Vulnerability
  • Tweet Meme

 

Demikian informasi dari kami.Semoga berguna.

Komentar (0)add comment

Tulis Komentar

busy
 
Acak Artikelnya
Pesan Domain :

hostgator indonesia

Masukan nama domain : www.  
Extension: .com.net.org.info.name.us.biz.ca.tv
Ingin Tampilan lebih pas ? Install BROWSER MOZILLA FIREFOX Google Pagerank Facebook
  • Radio.Pasarinternet.com

    Iklan Radio Online

  • Testimonial

    ipan ripai
    Date: Nov 08, 2009


    awal kenal dengan rajaklik adalah dari guru saya, admin dari ariefew.com , maka, saya langsung membeli hosting di rajaklik server indonesia yang paling murah.. ternyata, saya sekarang ketagihan kar...

    Komentar Terakhir

    Pengumuman

    Selamat Tahun Baru 2011

    Selamat Tahun Baru 2011, Semoga Kita diberikan kemudahan, Kelancaran segala Urusan dan Sukses Selalu.

    Rajaklik.com webhosting Indonesia Memberikan spesial diskon selama 1 bulan penuh di awal tahun 2011.

    Kupon diskon : 2011 bisa anda gunakan sebagai pendaftar order baru, berlaku untuk semua paket hosting, hosting indonesia, hosting usa, dan hosting HG.

    Diskon sebesar 10% baik paket hosting maupun domain (+/- 85.000/thn). Hemat dan Murah!

    Silahkan gunakan kupon tersebut sebagai kode promosi pada saat mengisi form order.

     

    Salam Sukses,

    E.HERLAMBANG

     

    Ada 212 tamu online
    mod_vvisit_countermod_vvisit_countermod_vvisit_countermod_vvisit_countermod_vvisit_countermod_vvisit_countermod_vvisit_counter
    Defense System
    web hosting palana
    Best CD Rates
    no bank account payday loans
    Dubai Travels
    cash advance on line
    instant payday loan online
    acai berry supplement
    Japanese Construction Timber
    best payday loans lenders