Critical WPML Plugin Flaw Exposes WordPress Sites to Remote Code Execution: https://t.co/QmX7jnfUj2 by The Hacker News #infosec #cybersecurity #technology #news
CVE-2024-7988 (CVSS 9.8): Rockwell Automation’s ThinManager Flaw Allows RCE https://t.co/rhOFTV8n03
CVE-2024-6633 (CVSS 9.8): Critical Flaw in Fortra FileCatalyst Workflow https://t.co/YFAo75vqKO
A series of critical vulnerabilities have been identified in popular software, posing significant risks to numerous users. The WPML WordPress plugin has a severe flaw, designated CVE-2024-6386, with a CVSS score of 9.9, potentially exposing over one million websites to remote code execution (RCE) attacks. Other vulnerabilities include CVE-2024-8073 in Hillstone Networks' Web Application Firewall (WAF) and CVE-2024-7988 in Rockwell Automation’s ThinManager, both rated at 9.8 on the CVSS scale. Additionally, CVE-2024-5932 affects the GiveWP plugin, while CVE-2024-6633 impacts Fortra's FileCatalyst Workflow. These vulnerabilities highlight ongoing cybersecurity challenges for widely used applications.