{"id":5567,"date":"2020-05-07T14:01:03","date_gmt":"2020-05-07T14:01:03","guid":{"rendered":"https:\/\/musilda.cz\/?p=5567"},"modified":"2020-05-07T14:01:03","modified_gmt":"2020-05-07T14:01:03","slug":"vazna-zranitelnost-pluginu-elementor-pro-a-ultimate-addons-for-elementor","status":"publish","type":"post","link":"https:\/\/affinite.io\/cs\/vazna-zranitelnost-pluginu-elementor-pro-a-ultimate-addons-for-elementor\/","title":{"rendered":"V\u00e1\u017en\u00e1 zranitelnost plugin\u016f Elementor Pro a Ultimate Addons for Elementor"},"content":{"rendered":"\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"750\" height=\"422\" src=\"https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/elementor.pro_.jpg\" alt=\"\" class=\"wp-image-5568\" srcset=\"https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/elementor.pro_.jpg 750w, https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/elementor.pro_-300x169.jpg 300w\" sizes=\"auto, (max-width: 750px) 100vw, 750px\" \/><\/figure>\n\n\n\n<p>Obl\u00edben\u00fd plugin pro stavbu WordPress str\u00e1nek a jeho roz\u0161\u00ed\u0159en\u00ed, obsahuj\u00ed v\u00e1\u017enou zranitelnost, kter\u00e1 ohro\u017euje velk\u00e9 mno\u017estv\u00ed web\u016f, kde jsou instalov\u00e1ny. <\/p>\n\n\n\n<p>Elementor Pro je placen\u00e1 verze Elementoru a je velmi obl\u00edben\u00e1, proto\u017ee umo\u017e\u0148uje vyv\u00e1\u0159et \u0161ablony \u010d\u00e1st\u00ed str\u00e1nek a s jeho pomoc\u00ed tak postav\u00edte kompletn\u00ed web. Ultimate Addons for Elementor je jeho roz\u0161\u00ed\u0159en\u00ed. <\/p>\n\n\n\n<p>Elementor Pro je instalov\u00e1n na milionu web\u016f a Ultimate Addons m\u00e1 110 000 instalac\u00ed. <\/p>\n\n\n\n<p><strong>Edit: byla vyd\u00e1na verze 2.9.4 s opravou <a href=\"https:\/\/elementor.com\/pro\/changelog\/\" target=\"_blank\" rel=\"noopener\">https:\/\/elementor.com\/pro\/changelog\/<\/a><\/strong><\/p>\n\n\n\n<p><strong><s>Zranitelnost u Elementoru Pro je pom\u011brn\u011b nov\u00e1 z\u00e1le\u017eitost, tak\u017ee na ni je\u0161t\u011b nen\u00ed vyd\u00e1na z\u00e1plata. <\/s><\/strong><\/p>\n\n\n\n<p>U Elementoru Pro se jedn\u00e1 o vyu\u017eit\u00ed zero day zranitelnosti a ohro\u017eeny jsou weby, kter\u00e9 maj\u00ed povolenou registraci u\u017eivatel\u016f. Chyba dovol\u00ed registrovan\u00fdm nahr\u00e1t soubor, kter\u00fd obsahuje spustiteln\u00fd k\u00f3d. D\u00edky tomu nainstaluj\u00ed zadn\u00ed vr\u00e1tka do syst\u00e9mu a mohou v\u00e1m klidn\u011b smazat cel\u00fd web. <\/p>\n\n\n\n<p>Naproti tomu Ultimate Addons ohro\u017euje i weby, kter\u00e9 povolenou registraci u\u017eivatel\u016f nemaj\u00ed. Pomoc\u00ed pluginu toti\u017e vytvo\u0159\u00ed u\u017eivatele a n\u00e1sledn\u011b jej pak vyu\u017eij\u00ed pro \u00fatok p\u0159es Elementor Pro. <\/p>\n\n\n\n<p><strong>Na\u0161t\u011bst\u00ed, pro Ultimate Addons je ji\u017e vyd\u00e1na verze 1.24.2, kter\u00e1 obsahuje opravu.<\/strong> <\/p>\n\n\n\n<p>Pokud chcete va\u0161e str\u00e1nky ochr\u00e1nit, aktualizujte okam\u017eit\u011b Ultimate Addons for Elementor plugin. <s>U Elementoru Pro je jedin\u00e1 mo\u017enost, odstranit jej ze str\u00e1nek a pou\u017e\u00edt free verzi. To bohu\u017eel zap\u0159\u00ed\u010din\u00ed rozbit\u00ed designu, ale jakmile pro verzi op\u011bt nainstalujete, v\u0161e by se m\u011blo vr\u00e1tit do norm\u00e1lu.<\/s>  Edit.: oprava je ji\u017e venku Tak fix u\u017e je venku. Kdy\u017e jsem to psal, tak je\u0161t\u011b nebyl. V ka\u017ed\u00e9m p\u0159\u00edpad\u011b aktualizovat &#8211; https:\/\/elementor.com\/pro\/changelog\/<\/p>\n\n\n\n<p><strong>Aktualizace je ji\u017e dostupn\u00e1, proto aktualizujte plugin na nejnov\u011bj\u0161\u00ed verzi<\/strong><\/p>\n\n\n\n<p>V p\u0159\u00edpad\u011b, \u017ee m\u00e1te pocit, \u017ee je va\u0161e str\u00e1nka ji\u017e napaden\u00e9<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>M\u016f\u017eete zkontrolovat podez\u0159el\u00e9 registrace u\u017eivatel\u016f a smazat je. <\/li><li>hledejte soubor <strong>wp-xmlrpc.php <\/strong>&#8211; to m\u016f\u017ee b\u00fdt znamen\u00edm, \u017ee je v\u00e1\u0161 web napaden\u00fd. Origin\u00e1ln\u00ed soubor nem\u00e1 p\u0159edponu wp-<\/li><li>sma\u017ete v\u0161echny nezn\u00e1m\u00e9 soubory ze slo\u017eky <strong>\/wp-content\/uploads\/elementor\/custom-icons\/<\/strong><\/li><\/ul>\n\n\n\n<p>Na zranitelnost upozornil team WordFence.com<\/p>\n\n\n\n<p>Zdroj: <a href=\"https:\/\/www.wordfence.com\/blog\/2020\/05\/combined-attack-on-elementor-pro-and-ultimate-addons-for-elementor-puts-1-million-sites-at-risk\/\" target=\"_blank\" rel=\"noopener\">https:\/\/www.wordfence.com\/blog\/2020\/05\/combined-attack-on-elementor-pro-and-ultimate-addons-for-elementor-puts-1-million-sites-at-risk\/<\/a><\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Obl\u00edben\u00fd plugin pro stavbu WordPress str\u00e1nek a jeho roz\u0161\u00ed\u0159en\u00ed, obsahuj\u00ed v\u00e1\u017enou zranitelnost, kter\u00e1 ohro\u017euje velk\u00e9 mno\u017estv\u00ed web\u016f, kde jsou instalov\u00e1ny. Elementor Pro je placen\u00e1 verze Elementoru a je velmi obl\u00edben\u00e1, proto\u017ee umo\u017e\u0148uje vyv\u00e1\u0159et \u0161ablony \u010d\u00e1st\u00ed str\u00e1nek a s jeho pomoc\u00ed tak postav\u00edte kompletn\u00ed web. Ultimate Addons for Elementor je jeho roz\u0161\u00ed\u0159en\u00ed. Elementor Pro je instalov\u00e1n<\/p>\n","protected":false},"author":1,"featured_media":9471,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_uag_custom_page_level_css":"","footnotes":""},"categories":[6],"tags":[],"class_list":["post-5567","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-bezpecnost-wordpressu"],"acf":[],"uagb_featured_image_src":{"full":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor.png",1200,800,false],"thumbnail":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor-150x150.png",150,150,true],"medium":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor-300x200.png",300,200,true],"medium_large":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor-768x512.png",640,427,true],"large":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor-1024x683.png",640,427,true],"1536x1536":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor.png",1200,800,false],"2048x2048":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor.png",1200,800,false],"archive-list":["https:\/\/affinite.io\/cs\/wp-content\/uploads\/sites\/2\/2020\/05\/wordpress-elementor-400x265.png",400,265,true]},"uagb_author_info":{"display_name":"Affinite","author_link":"https:\/\/affinite.io\/cs\/author\/affinite\/"},"uagb_comment_info":1,"uagb_excerpt":"Obl\u00edben\u00fd plugin pro stavbu WordPress str\u00e1nek a jeho roz\u0161\u00ed\u0159en\u00ed, obsahuj\u00ed v\u00e1\u017enou zranitelnost, kter\u00e1 ohro\u017euje velk\u00e9 mno\u017estv\u00ed web\u016f, kde jsou instalov\u00e1ny. Elementor Pro je placen\u00e1 verze Elementoru a je velmi obl\u00edben\u00e1, proto\u017ee umo\u017e\u0148uje vyv\u00e1\u0159et \u0161ablony \u010d\u00e1st\u00ed str\u00e1nek a s jeho pomoc\u00ed tak postav\u00edte kompletn\u00ed web. Ultimate Addons for Elementor je jeho roz\u0161\u00ed\u0159en\u00ed. Elementor Pro je instalov\u00e1n","_links":{"self":[{"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/posts\/5567","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/comments?post=5567"}],"version-history":[{"count":0,"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/posts\/5567\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/media\/9471"}],"wp:attachment":[{"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/media?parent=5567"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/categories?post=5567"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/affinite.io\/cs\/wp-json\/wp\/v2\/tags?post=5567"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}