{"id":5489,"date":"2020-04-18T05:57:02","date_gmt":"2020-04-18T05:57:02","guid":{"rendered":"https:\/\/musilda.cz\/?p=5489"},"modified":"2020-04-18T05:57:02","modified_gmt":"2020-04-18T05:57:02","slug":"kriticka-zranitelnost-v-sablone-onetone","status":"publish","type":"post","link":"https:\/\/affinite.io\/cs\/kriticka-zranitelnost-v-sablone-onetone\/","title":{"rendered":"Kritick\u00e1 zranitelnost v \u0161ablon\u011b OneTone"},"content":{"rendered":"\n
WordPress \u0161ablona OneTone obsahuje kritickou zranitelnost, jen\u017e umo\u017e\u0148uje nasadit \u00fato\u010dn\u00edk\u016fm do va\u0161eho webu \u0161kodliv\u00fd k\u00f3d.<\/p>\n\n\n\n
P\u0159ed n\u011bkolika dny se na n\u00e1s obr\u00e1til z\u00e1kazn\u00edk, s t\u00edm, \u017ee m\u00e1 napaden\u00fd web a i kdy\u017e jej vy\u010dist\u00ed, infekce je za chv\u00edli zp\u011bt. <\/p>\n\n\n\n
Nejprve jsme se domn\u00edvali, \u017ee jde o infekci, jen\u017e se ned\u00e1vno prohnala internetem a jen\u017e vyu\u017e\u00edvala p\u0159edev\u0161\u00edm zraniteln\u00fd adminer, viz. https:\/\/blog.sucuri.net\/2019\/11\/vulnerable-versions-of-adminer-as-a-universal-infection-vector.html<\/a>.<\/p>\n\n\n\n Na doty\u010dn\u00e9m webu, ale \u017e\u00e1dn\u00fd adminer nebyl, ani \u017e\u00e1dn\u00fd zn\u00e1m\u00fd zraniteln\u00fd plugin. <\/p>\n\n\n\n