1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Yoast SEO Wordpress Plugin - Security Issue?

Discussion in 'BlackHat Lounge' started by ttrox, Jul 28, 2014.

  1. ttrox

    ttrox Regular Member

    Joined:
    Jun 28, 2013
    Messages:
    217
    Likes Received:
    75
    EDIT: found out that the culprit for the security problems was the MailPoet Newsletter Plugin, as informed from here: http://blog.sucuri.net/2014/07/remote-file-upload-vulnerability-on-mailpoet-wysija-newsletters.html

    Just a heads up in case that it helps someone. I encourage everyone that uses Yoast SEO plugin to at least check the uploads/plugins folders of their Wordpress instalations. You might be surprised of what you can find there.
    Hope the bastards who are abusing this get whatever they deserve :)
     
    Last edited: Jul 28, 2014
  2. VoidITSolutions

    VoidITSolutions BANNED BANNED

    Joined:
    Apr 5, 2013
    Messages:
    164
    Likes Received:
    44
    Nice to know, thanks