{"id":69581,"date":"2020-02-20T20:42:04","date_gmt":"2020-02-20T17:42:04","guid":{"rendered":"https:\/\/prohoster.info\/blog\/uyazvimosti-v-wordpress-plaginah-imeyushhih-bolee-milliona-ustanovok"},"modified":"2020-03-03T16:11:07","modified_gmt":"2020-03-03T13:11:07","slug":"uyazvimosti-v-wordpress-plaginah-imeyushhih-bolee-milliona-ustanovok","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimosti-v-wordpress-plaginah-imeyushhih-bolee-milliona-ustanovok","title":{"rendered":"Rreziqet n\u00eb plagjinat e WordPress, q\u00eb kan\u00eb m\u00eb shum\u00eb se nj\u00eb milion instalime","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Ekspert\u00ebt e siguris\u00eb nga kompanit\u00eb Wordfence dhe WebARX kan\u00eb zbuluar disa vulnerabilitetet e rrezikshme n\u00eb pes\u00eb plugina p\u00ebr sistemin e menaxhimit t\u00eb p\u00ebrmbajtjes WordPress, duke p\u00ebrfshir\u00eb m\u00eb shum\u00eb se nj\u00eb milion instalime.<\/p>\n<ul>\n<li class=\"l\"> <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wordfence.com\/blog\/2020\/02\/improper-access-controls-in-gdpr-cookie-consent-plugin\/\">Vulnerabiliteti<\/a><\/noindex> n\u00eb pluginin <noindex><a rel=\"nofollow\" href=\"https:\/\/wordpress.org\/plugins\/cookie-law-info\/\">GDPR Cookie Consent<\/a><\/noindex>, i cili ka m\u00eb shum\u00eb se 700 mij\u00eb instalime. Problemi i \u00ebsht\u00eb dh\u00ebn\u00eb niveli i rrezikshm\u00ebris\u00eb 9 nga 10 (CVSS). Vulnerabiliteti lejon nj\u00eb p\u00ebrdorues t\u00eb autentikuar me t\u00eb drejta abonenti t\u00eb fshij\u00eb ose t\u00eb fsheh\u00eb (t\u00eb ndryshoj\u00eb statusin n\u00eb nj\u00eb skic\u00eb t\u00eb papublikueshme) \u00e7do faqe t\u00eb faqes, si dhe t\u00eb vendos\u00eb p\u00ebrmbajtjen e tij n\u00eb faqe.<br \/>\nVulnerabiliteti <noindex><a rel=\"nofollow\" href=\"https:\/\/plugins.trac.wordpress.org\/changeset\/2241572\/\">i eliminuar<\/a><\/noindex> n\u00eb versionin 1.8.3.<\/p>\n<li class=\"l\"> <noindex><a rel=\"nofollow\" href=\"https:\/\/www.webarxsecurity.com\/critical-issue-in-themegrill-demo-importer\/\">Vulnerabiliteti<\/a><\/noindex> n\u00eb pluginin <noindex><a rel=\"nofollow\" href=\"https:\/\/wordpress.org\/plugins\/themegrill-demo-importer\/\">ThemeGrill Demo Importer<\/a><\/noindex>, i cili ka mbi 200 mij\u00eb instalime (jan\u00eb regjistruar sulme reale n\u00eb faqe, pas fillimit t\u00eb cil\u00ebve dhe publikimit t\u00eb t\u00eb dh\u00ebnave mbi dob\u00ebsin\u00eb numri i instalimeve tashm\u00eb \u00ebsht\u00eb zvog\u00ebluar n\u00eb 100 mij\u00eb). Dob\u00ebsia lejon q\u00eb nj\u00eb vizitor i paautorizuar t\u00eb pastroj\u00eb p\u00ebrmbajtjen e baz\u00ebs s\u00eb t\u00eb dh\u00ebnave t\u00eb faqes dhe t\u00eb rikthej\u00eb baz\u00ebn e t\u00eb dh\u00ebnave n\u00eb nj\u00eb gjendje t\u00eb re instalimi. N\u00ebse n\u00eb baz\u00ebn e t\u00eb dh\u00ebnave ka nj\u00eb p\u00ebrdorues me emrin admin, at\u00ebher\u00eb dob\u00ebsia gjithashtu lejon marrjen e kontrollit t\u00eb plot\u00eb mbi faqen. Kjo dob\u00ebsi shkaktohet nga nj\u00eb d\u00ebshtim gjat\u00eb p\u00ebrpjekjes p\u00ebr t\u00eb autentikuar p\u00ebrdoruesin, duke p\u00ebrpjekur t\u00eb d\u00ebrgoj\u00eb komanda me privilegje p\u00ebrmes skriptit \/wp-admin\/admin-ajax.php. Problemi \u00ebsht\u00eb zgjidhur n\u00eb versionin 1.6.2.\n<li class=\"l\"> <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wordfence.com\/blog\/2020\/02\/zero-day-vulnerability-in-themerex-addons-plugin-exploited-in-the-wild\/\">Vulnerabiliteti<\/a><\/noindex> n\u00eb pluginin <noindex><a rel=\"nofollow\" href=\"https:\/\/themerex.net\/wp\/download_plugins\/themerex-addons\/\">ThemeREX Addons<\/a><\/noindex>, i p\u00ebrdorur n\u00eb 44 mij\u00eb faqet. Problemit i \u00ebsht\u00eb caktuar nj\u00eb nivel rreziku 9.8 nga 10. Dob\u00ebsia lejon q\u00eb nj\u00eb p\u00ebrdorues i paautorizuar t\u00eb ekzekutoj\u00eb kodin e tij PHP n\u00eb server dhe t\u00eb realizoj\u00eb z\u00ebvend\u00ebsimin e llogaris\u00eb s\u00eb administratorit t\u00eb faqes duke d\u00ebrguar nj\u00eb k\u00ebrkes\u00eb specifike p\u00ebrmes REST-API.<br \/>\n N\u00eb internet jan\u00eb regjistruar tashm\u00eb raste shfryt\u00ebzimi t\u00eb dob\u00ebsis\u00eb, por azhurnimi me rregullimin ende nuk \u00ebsht\u00eb n\u00eb dispozicion. P\u00ebrdoruesve u rekomandohet q\u00eb sa m\u00eb shpejt t\u00eb fshijn\u00eb k\u00ebt\u00eb plugin.<\/p>\n<li class=\"l\"> <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wordfence.com\/blog\/2020\/02\/vulnerability-in-wpcentral-plugin-leads-to-privilege-escalation\/\">Vulnerabiliteti<\/a><\/noindex> n\u00eb pluginin <noindex><a rel=\"nofollow\" href=\"https:\/\/wordpress.org\/plugins\/wp-central\/\">wpCentral<\/a><\/noindex>, me nj\u00eb num\u00ebr prej 60 mij\u00eb instalimesh. Problemi ka marr\u00eb nj\u00eb nivel rrezikshm\u00ebrie prej 8.8 nga 10. Vulnerabiliteti i lejon \u00e7do vizitori t\u00eb autentikuar, p\u00ebrfshir\u00eb ata me t\u00eb drejta abonenti, t\u00eb rrisin privilegjet e tyre n\u00eb administrator t\u00eb faqes ose t\u00eb qasen n\u00eb panelin e menaxhimit wpCentral. Problemi \u00ebsht\u00eb rregulluar n\u00eb versionin 1.5.1.\n<li class=\"l\"> <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wordfence.com\/blog\/2020\/02\/critical-vulnerability-in-profile-builder-plugin-allowed-site-takeover\/\">Vulnerabiliteti<\/a><\/noindex> n\u00eb pluginin <noindex><a rel=\"nofollow\" href=\"https:\/\/wordpress.org\/plugins\/profile-builder\/\">Profile Builder<\/a><\/noindex>, me nj\u00eb num\u00ebr prej rreth 65 mij\u00eb instalimesh. Problemi ka marr\u00eb nj\u00eb nivel rrezikshm\u00ebrie prej 10 nga 10. Vulnerabiliteti i jep mund\u00ebsin\u00eb nj\u00eb p\u00ebrdoruesi t\u00eb paautentikuar t\u00eb krijoj\u00eb nj\u00eb llogari me t\u00eb drejtat e administratorit (plugin-i lejon krijimin e formave t\u00eb regjistrimit dhe p\u00ebrdoruesi mund thjesht t\u00eb kaloj\u00eb nj\u00eb fush\u00eb shtes\u00eb me rolin e p\u00ebrdoruesit, duke i dh\u00ebn\u00eb atij nivelin e administratorit). Problemi \u00ebsht\u00eb rregulluar n\u00eb versionin 3.1.1.\n<\/ul>\n<p>P\u00ebrve\u00e7 k\u00ebsaj, mund t\u00eb theksohet <noindex><a rel=\"nofollow\" href=\"https:\/\/blog.prevailion.com\/2020\/02\/phps-labyrinth-weaponized-wordpress.html\">identifikimi<\/a><\/noindex> rrjetet p\u00ebr shp\u00ebrndarjen e plugjeve dhe temave trojan p\u00ebr WordPress. Kriminel\u00ebt kan\u00eb publikuar kopje pirate t\u00eb plugjeve t\u00eb paguara n\u00eb faqe t\u00eb rreme katalogu, duke integruar paraprakisht nj\u00eb backdoor p\u00ebr t\u00eb fituar qasje t\u00eb larg\u00ebt dhe p\u00ebr t\u00eb ngarkuar komandat nga serveri i kontrollit. Pas aktivizimit, kodi keqdash\u00ebs \u00ebsht\u00eb p\u00ebrdorur p\u00ebr t\u00eb vendosur reklama t\u00eb d\u00ebmshme ose mashtruese (p\u00ebr shembull, paralajm\u00ebrime p\u00ebr nevoj\u00ebn p\u00ebr t\u00eb instaluar antivirus ose p\u00ebr t\u00eb p\u00ebrdit\u00ebsuar shfletuesin), si dhe p\u00ebr optimizimin e motor\u00ebve t\u00eb k\u00ebrkimit p\u00ebr t\u00eb promovuar faqet q\u00eb shp\u00ebrndajn\u00eb plugje keqdash\u00ebse. Sipas t\u00eb dh\u00ebnave paraprake, m\u00eb shum\u00eb se 20,000 faqe jan\u00eb compromise p\u00ebrmes k\u00ebtyre plugjeve. Mes viktimave jan\u00eb sh\u00ebnuar nj\u00eb platform\u00eb decentralizuar minierash, nj\u00eb firm\u00eb tregtie, nj\u00eb bank\u00eb, disa kompani t\u00eb m\u00ebdha, nj\u00eb zhvillues zgjidhjesh p\u00ebr pagesa me karta krediti, kompani IT, etj.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Burimi: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=52398\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0439 Wordfence \u0438 WebARX \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u043e\u043f\u0430\u0441\u043d\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0432 \u043f\u044f\u0442\u0438 \u043f\u043b\u0430\u0433\u0438\u043d\u0430\u0445 \u0434\u043b\u044f \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f web-\u043a\u043e\u043d\u0442\u0435\u043d\u0442\u043e\u043c WordPress, \u0432 \u0441\u0443\u043c\u043c\u0435 \u043d\u0430\u0441\u0447\u0438\u0442\u044b\u0432\u0430\u044e\u0449\u0438\u0445 \u0431\u043e\u043b\u0435\u0435 \u043c\u0438\u043b\u043b\u0438\u043e\u043d\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u043f\u043b\u0430\u0433\u0438\u043d\u0435 GDPR Cookie Consent, \u0438\u043c\u0435\u044e\u0449\u0435\u043c \u0431\u043e\u043b\u044c\u0448\u0435 700 \u0442\u044b\u0441\u044f\u0447 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 9 \u0438\u0437 10 (CVSS). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0434\u0430\u0451\u0442 \u0432\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u0430\u0443\u0442\u0435\u043d\u0442\u0438\u0444\u0438\u0446\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0441 \u043f\u0440\u0430\u0432\u0430\u043c\u0438 \u043f\u043e\u0434\u043f\u0438\u0441\u0447\u0438\u043a\u0430 \u0443\u0434\u0430\u043b\u0438\u0442\u044c \u0438\u043b\u0438 \u0441\u043a\u0440\u044b\u0442\u044c [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-69581","post","type-post","status-publish","format-standard","hentry","category-novosti-interneta"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 4.9.10 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0439 Wordfence \u0438 WebARX \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u043e\u043f\u0430\u0441\u043d\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0432 \u043f\u044f\u0442\u0438 \u043f\u043b\u0430\u0433\u0438\u043d\u0430\u0445 \u0434\u043b\u044f \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f web-\u043a\u043e\u043d\u0442\u0435\u043d\u0442\u043e\u043c WordPress, \u0432 \u0441\u0443\u043c\u043c\u0435 \u043d\u0430\u0441\u0447\u0438\u0442\u044b\u0432\u0430\u044e\u0449\u0438\u0445 \u0431\u043e\u043b\u0435\u0435 \u043c\u0438\u043b\u043b\u0438\u043e\u043d\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u043f\u043b\u0430\u0433\u0438\u043d\u0435 GDPR Cookie Consent, \u0438\u043c\u0435\u044e\u0449\u0435\u043c \u0431\u043e\u043b\u044c\u0448\u0435 700 \u0442\u044b\u0441\u044f\u0447 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 9 \u0438\u0437 10 (CVSS). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0434\u0430\u0451\u0442 \u0432\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u0430\u0443\u0442\u0435\u043d\u0442\u0438\u0444\u0438\u0446\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0441 \u043f\u0440\u0430\u0432\u0430\u043c\u0438 \u043f\u043e\u0434\u043f\u0438\u0441\u0447\u0438\u043a\u0430 \u0443\u0434\u0430\u043b\u0438\u0442\u044c \u0438\u043b\u0438 \u0441\u043a\u0440\u044b\u0442\u044c\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimosti-v-wordpress-plaginah-imeyushhih-bolee-milliona-ustanovok\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 4.9.10\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0432 WordPress-\u043f\u043b\u0430\u0433\u0438\u043d\u0430\u0445, \u0438\u043c\u0435\u044e\u0449\u0438\u0445 \u0431\u043e\u043b\u0435\u0435 \u043c\u0438\u043b\u043b\u0438\u043e\u043d\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0439 Wordfence \u0438 WebARX \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u043e\u043f\u0430\u0441\u043d\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0432 \u043f\u044f\u0442\u0438 \u043f\u043b\u0430\u0433\u0438\u043d\u0430\u0445 \u0434\u043b\u044f \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f web-\u043a\u043e\u043d\u0442\u0435\u043d\u0442\u043e\u043c WordPress, \u0432 \u0441\u0443\u043c\u043c\u0435 \u043d\u0430\u0441\u0447\u0438\u0442\u044b\u0432\u0430\u044e\u0449\u0438\u0445 \u0431\u043e\u043b\u0435\u0435 \u043c\u0438\u043b\u043b\u0438\u043e\u043d\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u043f\u043b\u0430\u0433\u0438\u043d\u0435 GDPR Cookie Consent, \u0438\u043c\u0435\u044e\u0449\u0435\u043c \u0431\u043e\u043b\u044c\u0448\u0435 700 \u0442\u044b\u0441\u044f\u0447 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 9 \u0438\u0437 10 (CVSS). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0434\u0430\u0451\u0442 \u0432\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u0430\u0443\u0442\u0435\u043d\u0442\u0438\u0444\u0438\u0446\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0441 \u043f\u0440\u0430\u0432\u0430\u043c\u0438 \u043f\u043e\u0434\u043f\u0438\u0441\u0447\u0438\u043a\u0430 \u0443\u0434\u0430\u043b\u0438\u0442\u044c \u0438\u043b\u0438 \u0441\u043a\u0440\u044b\u0442\u044c\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimosti-v-wordpress-plaginah-imeyushhih-bolee-milliona-ustanovok\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-02-20T17:42:04+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-03-03T13:11:07+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Vulnerabilitetet n\u00eb pluginat e WordPress, q\u00eb kan\u00eb m\u00eb shum\u00eb se nj\u00eb milion instalime | ProHoster","description":"Eksploruesit e siguris\u00eb nga kompanit\u00eb Wordfence dhe WebARX kan\u00eb zbuluar disa vulnerabilitete t\u00eb rrezikshme n\u00eb pes\u00eb plugin\u00eb p\u00ebr sistemin e menaxhimit t\u00eb p\u00ebrmbajtjes WordPress, t\u00eb cilat kan\u00eb m\u00eb shum\u00eb se nj\u00eb milion instalime n\u00eb total. Vulnerabiliteti n\u00eb pluginin GDPR Cookie Consent ka m\u00eb shum\u00eb se 700 mij\u00eb instalime. Problemit i \u00ebsht\u00eb caktuar nj\u00eb nivel rreziku 9 nga 10 (CVSS). Vulnerabiliteti lejon nj\u00eb p\u00ebrdorues t\u00eb autentikuar me t\u00eb drejta abonenti t\u00eb fshij\u00eb ose t\u00eb fsheh\u00eb","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimosti-v-wordpress-plaginah-imeyushhih-bolee-milliona-ustanovok","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0432 WordPress-\u043f\u043b\u0430\u0433\u0438\u043d\u0430\u0445, \u0438\u043c\u0435\u044e\u0449\u0438\u0445 \u0431\u043e\u043b\u0435\u0435 \u043c\u0438\u043b\u043b\u0438\u043e\u043d\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a | ProHoster","og:description":"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0439 Wordfence \u0438 WebARX \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u043e\u043f\u0430\u0441\u043d\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0432 \u043f\u044f\u0442\u0438 \u043f\u043b\u0430\u0433\u0438\u043d\u0430\u0445 \u0434\u043b\u044f \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f web-\u043a\u043e\u043d\u0442\u0435\u043d\u0442\u043e\u043c WordPress, \u0432 \u0441\u0443\u043c\u043c\u0435 \u043d\u0430\u0441\u0447\u0438\u0442\u044b\u0432\u0430\u044e\u0449\u0438\u0445 \u0431\u043e\u043b\u0435\u0435 \u043c\u0438\u043b\u043b\u0438\u043e\u043d\u0430 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u043f\u043b\u0430\u0433\u0438\u043d\u0435 GDPR Cookie Consent, \u0438\u043c\u0435\u044e\u0449\u0435\u043c \u0431\u043e\u043b\u044c\u0448\u0435 700 \u0442\u044b\u0441\u044f\u0447 \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043e\u043a. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 9 \u0438\u0437 10 (CVSS). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0434\u0430\u0451\u0442 \u0432\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u0430\u0443\u0442\u0435\u043d\u0442\u0438\u0444\u0438\u0446\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0441 \u043f\u0440\u0430\u0432\u0430\u043c\u0438 \u043f\u043e\u0434\u043f\u0438\u0441\u0447\u0438\u043a\u0430 \u0443\u0434\u0430\u043b\u0438\u0442\u044c \u0438\u043b\u0438 \u0441\u043a\u0440\u044b\u0442\u044c","og:url":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimosti-v-wordpress-plaginah-imeyushhih-bolee-milliona-ustanovok","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-02-20T17:42:04+00:00","article:modified_time":"2020-03-03T13:11:07+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"69581","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 19:20:24","updated":"2022-10-05 19:44:59"},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/69581","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=69581"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/69581\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=69581"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=69581"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=69581"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}