{"id":608,"date":"2016-02-02T09:57:26","date_gmt":"2016-02-02T14:57:26","guid":{"rendered":"https:\/\/cert.pa\/?p=608"},"modified":"2016-02-05T10:01:42","modified_gmt":"2016-02-05T15:01:42","slug":"actualizaciones-de-seguridad-en-wordpress-4-4-2","status":"publish","type":"post","link":"https:\/\/cert.pa\/?p=608","title":{"rendered":"Actualizaciones de Seguridad en WordPress 4.4.2"},"content":{"rendered":"<p>CSIRT Panam\u00e1 Aviso \u2013 Actualizaciones de Seguridad en WordPress 4.4.2<br \/>\nGravedad: Alta<br \/>\nFecha de publicaci\u00f3n: Febrero 2, 2016<br \/>\nFecha de modificaci\u00f3n: Febrero 2, 2016<br \/>\n\u00daltima revisi\u00f3n: Revisi\u00f3n A.<br \/>\nFuente: WordPress<\/p>\n<p>Sistemas afectados<\/p>\n<p>WordPress 4.4.2<\/p>\n<p>I. Descripci\u00f3n<\/p>\n<p>WordPress 4.4.2 ya est\u00e1 disponible. Esta es unaversi\u00f3n de seguridadpara todas las versiones anteriores y se recomienda actualizar sus sitios inmediatamente.<\/p>\n<p>II. Impacto<\/p>\n<p>Las versiones de WordPress 4.4.1 y anteriores, est\u00e1n afectadas por dos problemas de seguridad:<\/p>\n<ul>\n<li>Posible vulnerabilidad SSRF para ciertos URLs.<\/li>\n<li>Ataques de redirecci\u00f3n abierta.<\/li>\n<\/ul>\n<p>III. Detecci\u00f3n<\/p>\n<p>Todos los sistemas de WordPress que tengan instalada la versi\u00f3n 4.4.1 o anterior.<\/p>\n<p>IV. Mitigaci\u00f3n<\/p>\n<p>Para no ser v\u00edctimas de estos ataques y vulnerabilidades se recomienda una actualizaci\u00f3n inmediata a la versi\u00f3n 4.4.2<\/p>\n<p>V. Referencia a soluciones, herramientas e informaci\u00f3n<\/p>\n<ul>\n<li>https:\/\/wordpress.org\/news\/2016\/02\/wordpress-4-4-2-security-and-maintenance-release\/<\/li>\n<li>https:\/\/www.wordfence.com\/blog\/2016\/02\/wordpress-4-4-2-security-update\/<\/li>\n<\/ul>\n<p>VI. Informaci\u00f3n de contacto<\/p>\n<p>CSIRT PANAMA<br \/>\nComputer Security Incident Response Team Autoridad Nacional para la<br \/>\nInnovacion Gubernamental<br \/>\nE-Mail: info@cert.pa<br \/>\nPhone: +507 520-CERT (2378)<br \/>\nWeb: http:\/\/www.cert.pa<br \/>\nTwitter: @CSIRTPanama<br \/>\nFacebook: http:\/\/www.facebook.com\/CSIRTPanama<br \/>\nKey ID: 16F2B124<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CSIRT Panam\u00e1 Aviso \u2013 Actualizaciones de Seguridad en WordPress 4.4.2 Gravedad: Alta Fecha de publicaci\u00f3n: Febrero 2, 2016 Fecha de modificaci\u00f3n: Febrero 2, 2016 \u00daltima revisi\u00f3n: Revisi\u00f3n A. Fuente: WordPress Sistemas afectados WordPress 4.4.2 I&#8230;.<\/p>\n","protected":false},"author":4,"featured_media":568,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[4],"tags":[8,14],"class_list":["post-608","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-avisos-de-seguridad","tag-avisos","tag-wordpress"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/608","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=608"}],"version-history":[{"count":3,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/608\/revisions"}],"predecessor-version":[{"id":611,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/608\/revisions\/611"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/media\/568"}],"wp:attachment":[{"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=608"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=608"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=608"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}