Skip to main content
CyberPartialMediumDeveloping
5.3

WordPress Patches 'Click2Shell' Flaw Enabling Remote Code Execution

WordPress released a security patch for a vulnerability dubbed 'Click2Shell' that allows attackers to automatically install and preview themes, potentially leading to remote code execution. The flaw affects a widely used content management system, and while details are limited, the potential for RCE on unpatched sites is significant. The patch's availability and the vulnerability's exploitation status remain unclear.

SecurityWeek2 days agoengCredibility 26%View source

Score Breakdown

Mosaic Score5.3
Confidence0.5
Significance0.5
Source credibility0.3
Source

Related signals

8 found