{"id":3250,"date":"2023-01-31T13:15:18","date_gmt":"2023-01-31T18:15:18","guid":{"rendered":"https:\/\/cert.pa\/?p=3250"},"modified":"2023-01-31T13:15:18","modified_gmt":"2023-01-31T18:15:18","slug":"malware-para-linux-afecta-plugins-de-wordpress","status":"publish","type":"post","link":"https:\/\/cert.pa\/?p=3250","title":{"rendered":"Malware para Linux afecta plugins de WordPress"},"content":{"rendered":"\n<p>CSIRT Panam\u00e1 Aviso 2023-ene-31 &#8211; Malware para Linux afecta plugins de WordPress<br>Gravedad: media<br>Fecha de publicaci\u00f3n: enero 31, 2023<br>\u00daltima revisi\u00f3n: enero 31, 2023<br>https:\/\/blog.segu-info.com.ar\/2023\/01\/nuevo-malware-para-linux-afecta-plugins.html<\/p>\n\n\n\n<p>Sistemas Afectados:<br>Plugins de WordPress:<\/p>\n\n\n\n<p>WP Live Chat Support<br>Yuzo Related Posts (5.12.89)<br>Yellow Pencil Visual CSS Style Editor (&lt; 7.2.0)<br>Easy WP SMTP (1.3.9)<br>WP GDPR Compliance (1.4.2)<br>Newspaper (CVE-2016-10972, 6.4 &#8211; 6.7.1)<br>Thim Core<br>Smart Google Code Inserter (discontinued as of January 28, 2022, &lt; 3.5)<br>Total Donations (&lt;= 2.0.5)<br>Post Custom Templates Lite (&lt; 1.7)<br>WP Quick Booking Manager<br>Live Chat with Messenger Customer Chat by Zotabox (&lt; 1.4.9)<br>Blog Designer (&lt; 1.8.12)<br>WordPress Ultimate FAQ (CVE-2019-17232 and CVE-2019-17233, 1.24.2)<br>WP-Matomo Integration (WP-Piwik)<br>ND Shortcodes (&lt;= 5.8)<br>WP Live Chat (8.0.27)<br>Coming Soon Page and Maintenance Mode (&lt;= 5.1.0)<br>Hybrid<br>Brizy<br>FV Flowplayer Video Player<br>WooCommerce<br>Coming Soon Page &amp; Maintenance Mode<br>Onetone<br>Simple Fields<br>Delucks SEO<br>Poll, Survey, Form &amp; Quiz Maker by OpinionStage<br>Social Metrics Tracker<br>WPeMatico RSS Feed Fetcher, and<br>Rich Reviews<\/p>\n\n\n\n<p>I. Descripci\u00f3n<\/p>\n\n\n\n<p>Varios sitios de WordPress est\u00e1n siendo atacados por una variedad de malware de Linux que aprovecha las fallas en m\u00e1s de dos docenas de complementos y temas para comprometer los sistemas vulnerables.<\/p>\n\n\n\n<p>II. Impacto<\/p>\n\n\n\n<p>&#8220;Si los sitios usan versiones desactualizadas de dichos complementos, que carecen de soluciones cruciales, las p\u00e1ginas web seleccionadas pueden ser inyectadas con JavaScripts maliciosos&#8221;, dijo el proveedor de seguridad ruso Doctor Web en un informe publicado la semana pasada. &#8220;Como resultado, cuando los usuarios hacen clic en cualquier \u00e1rea de una p\u00e1gina atacada, son redirigidos a otros sitios&#8221;.<\/p>\n\n\n\n<p>Los ataques implican armar una lista de vulnerabilidades de seguridad conocidas en 19 complementos y temas diferentes que probablemente est\u00e9n instalados en un sitio de WordPress, us\u00e1ndolo para implantar un script que puede apuntar a un sitio web espec\u00edfico para expandir a\u00fan m\u00e1s la red.<\/p>\n\n\n\n<p>III. Fuente<\/p>\n\n\n\n<p>Puede ver la nota completa en el sitio SEGURinfo.ar<\/p>\n\n\n\n<p>https:\/\/blog.segu-info.com.ar\/2023\/01\/nuevo-malware-para-linux-afecta-plugins.html<\/p>\n\n\n\n<p>IV. Informaci\u00f3n de contacto<br>CSIRT PANAMA<br>Computer Security Incident Response Team Autoridad Nacional para la Innovacion Gubernamental<br>E-Mail: info@cert.pa<br>Phone: +507 520-CERT (2378)<br>Web: https:\/\/cert.pa<br>Twitter: @CSIRTPanama<br>Facebook: http:\/\/www.facebook.com\/CSIRTPanama<br>Key ID: 16F2B124<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CSIRT Panam\u00e1 Aviso 2023-ene-31 &#8211; Malware para Linux afecta plugins de WordPressGravedad: mediaFecha de publicaci\u00f3n: enero 31, 2023\u00daltima revisi\u00f3n: enero 31, 2023https:\/\/blog.segu-info.com.ar\/2023\/01\/nuevo-malware-para-linux-afecta-plugins.html Sistemas Afectados:Plugins de WordPress: WP Live Chat SupportYuzo Related Posts (5.12.89)Yellow Pencil Visual&#8230;<\/p>\n","protected":false},"author":4,"featured_media":846,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[4],"tags":[14],"class_list":["post-3250","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-avisos-de-seguridad","tag-wordpress"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/3250","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=3250"}],"version-history":[{"count":1,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/3250\/revisions"}],"predecessor-version":[{"id":3251,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/3250\/revisions\/3251"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/media\/846"}],"wp:attachment":[{"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=3250"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=3250"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=3250"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}