Thursday, February 25, 2021
  • About Us
  • Contact Us
  • Deals & Coupons
  • Privacy Policy
  • Terms & Conditions
Cloud Host News
  • Home
  • Hosting
    NetApp Becomes Technology Partner of DHPA

    NetApp Becomes Technology Partner of DHPA

    Managed WordPress Hosting Provider DreamHost Partners with Lendio

    DreamHost, a Managed WordPress Hosting Provider Partners with Lendio

    The Events Calendar

    Liquid Web Acquires ‘The Events Calendar’ a Popular WordPress Plugin

    HostPapa acquires another Canadian web hosting company

    HostPapa acquires another Canadian web hosting company

    Web.com releases new lineup of Pro Services(Pro SEO and Pro Website)

    Web.com releases new lineup of Pro Services(Pro SEO and Pro Website)

    Loopia Picks EcoDataCenter From Sweden for Sustainable Data Center Services.

    Loopia Picks EcoDataCenter From Sweden for Sustainable Data Center Services.

    Trending Tags

    • Hosting
    • A2 Hosting
    • web hosting
    • Cloud Hosting
    • free hosting
    • DreamHost
  • Cloud
    Bitcoin Plummeted $8000 After Elon Musk's Concerns Over Rally

    Bitcoin Plummeted $8000 After Elon Musk’s Concerns Over Rally

    Red Hat's OpenShift Platform Released on IBM Power Virtual Servers

    Red Hat’s OpenShift Platform Released on IBM Power Virtual Servers

    Amazon Web Services (AWS) Expands into Adelaide, South Australia

    Amazon Web Services (AWS) Expands into Adelaide, South Australia

    Veeam Software Extends Google Cloud Partnership

    Veeam Backup for Google Cloud Platform: Veeam Software Extends Google Cloud Partnership

    Google Launches VM Manager, An Infrastructure Management Tools Suite

    Google Launches VM Manager, An Infrastructure Management Tools Suite

    SUSE Announced The Release of Longhorn 1.1

    SUSE Announced The Release of Longhorn 1.1

    Trending Tags

    • Cloud
    • Private Cloud Hosting
    • Google Cloud Platform
    • Cloud Hosting
    • Google Cloud
  • Network/Internet
    Brave Browser Becomes the First Browser to Integrate IPFS Protocol

    Brave Browser Becomes the First Browser to Integrate IPFS Protocol

    ICANN70 to be Held Online on 22-25 March

    ICANN70 to be Held Online on 22-25 March

    OneWeb Plans to Offer High-Speed Internet in India by Q2 2022

    OneWeb Plans to Offer High-Speed Internet in India by Q2 2022

    Cloudflare and Apple Team Up to Develop New Internet Protocol

    Cloudflare and Apple Team Up to Develop New Internet Protocol

    ZenFi Networks Extends Network Capabilities

    ZenFi Networks Extends Network Capabilities

    Spark and NNNCo agree to trans-Tasman IoT network sharing

    Spark and NNNCo agree to trans-Tasman IoT network sharing

    Trending Tags

    • network security
    • 5G Network
    • Network OS
    • 5G Network Solution
    • Dark Fiber Network
  • Security
    Subscribe to our newsletter for the latest security news right from the security and research industries.

    Microsoft Announced SolarWinds Hackers Downloaded Some Azure, Exchange Source Code

    Microsoft Azure and Canonical Ubuntu Linux Have a User Privacy Issue

    Microsoft Azure and Canonical Ubuntu Linux Have a User Privacy Issue

    Chrome Sync Feature Exploited

    Hackers May Use Malicious Chrome Sync Feature to Steal Your Data

    Google Fixes Zero-day Vulnerability in Chrome 88.0.4324.150

    Google Fixes Zero-day Vulnerability in Chrome 88.0.4324.150

    RiskIQ Releases a Tool That Can Create Phishing Pages In Real-Time

    RiskIQ Releases a Tool That Can Create Phishing Pages In Real-Time

    Microsoft Releases EDR Capabilities for Linux Server

    Microsoft Releases EDR Capabilities for Linux Server

    Trending Tags

    • cybersecurity
    • Cloud Security
    • network security
    • WordPress Security
    • Secure Colocation Facility
  • Linux
    Ubuntu 20.04.2 LTS Re-Released

    Ubuntu 20.04.2 LTS Re-Released Due to OEM Install Bug

    Linux Kernel 5.11

    Linus Torvalds Declares First Linux Kernel 5.11 Release Candidate (RC)

    Major Linux Kernel Update Released to Fix 14 Vulnerabilities

    Major Linux Kernel Update Released to Fix 14 Vulnerabilities

    Linux Kernel 5.8

    Linux Kernel 5.8 Reaches EOL, Users Advised to Upgrade to Linux 5.9 Series

    Oracle Linux 7.9

    Oracle Linux 7.9 Update: Oracle Releases Oracle Linux 7.9

    Red Hat Enterprise Linux 8.3 beta now available

    Red Hat Enterprise Linux 8.3 beta now available

    Trending Tags

    • Linux Kernel
    • Linux Torvalds
    • Oracle Linux latest news
    • Oracle Linux latest update
  • More
    • Big Data
    • Blockchain
    • Games
    • Hardware
    • Software
    • Windows
    • Press Release
No Result
View All Result
Cloud Host News
  • Home
  • Hosting
    NetApp Becomes Technology Partner of DHPA

    NetApp Becomes Technology Partner of DHPA

    Managed WordPress Hosting Provider DreamHost Partners with Lendio

    DreamHost, a Managed WordPress Hosting Provider Partners with Lendio

    The Events Calendar

    Liquid Web Acquires ‘The Events Calendar’ a Popular WordPress Plugin

    HostPapa acquires another Canadian web hosting company

    HostPapa acquires another Canadian web hosting company

    Web.com releases new lineup of Pro Services(Pro SEO and Pro Website)

    Web.com releases new lineup of Pro Services(Pro SEO and Pro Website)

    Loopia Picks EcoDataCenter From Sweden for Sustainable Data Center Services.

    Loopia Picks EcoDataCenter From Sweden for Sustainable Data Center Services.

    Trending Tags

    • Hosting
    • A2 Hosting
    • web hosting
    • Cloud Hosting
    • free hosting
    • DreamHost
  • Cloud
    Bitcoin Plummeted $8000 After Elon Musk's Concerns Over Rally

    Bitcoin Plummeted $8000 After Elon Musk’s Concerns Over Rally

    Red Hat's OpenShift Platform Released on IBM Power Virtual Servers

    Red Hat’s OpenShift Platform Released on IBM Power Virtual Servers

    Amazon Web Services (AWS) Expands into Adelaide, South Australia

    Amazon Web Services (AWS) Expands into Adelaide, South Australia

    Veeam Software Extends Google Cloud Partnership

    Veeam Backup for Google Cloud Platform: Veeam Software Extends Google Cloud Partnership

    Google Launches VM Manager, An Infrastructure Management Tools Suite

    Google Launches VM Manager, An Infrastructure Management Tools Suite

    SUSE Announced The Release of Longhorn 1.1

    SUSE Announced The Release of Longhorn 1.1

    Trending Tags

    • Cloud
    • Private Cloud Hosting
    • Google Cloud Platform
    • Cloud Hosting
    • Google Cloud
  • Network/Internet
    Brave Browser Becomes the First Browser to Integrate IPFS Protocol

    Brave Browser Becomes the First Browser to Integrate IPFS Protocol

    ICANN70 to be Held Online on 22-25 March

    ICANN70 to be Held Online on 22-25 March

    OneWeb Plans to Offer High-Speed Internet in India by Q2 2022

    OneWeb Plans to Offer High-Speed Internet in India by Q2 2022

    Cloudflare and Apple Team Up to Develop New Internet Protocol

    Cloudflare and Apple Team Up to Develop New Internet Protocol

    ZenFi Networks Extends Network Capabilities

    ZenFi Networks Extends Network Capabilities

    Spark and NNNCo agree to trans-Tasman IoT network sharing

    Spark and NNNCo agree to trans-Tasman IoT network sharing

    Trending Tags

    • network security
    • 5G Network
    • Network OS
    • 5G Network Solution
    • Dark Fiber Network
  • Security
    Subscribe to our newsletter for the latest security news right from the security and research industries.

    Microsoft Announced SolarWinds Hackers Downloaded Some Azure, Exchange Source Code

    Microsoft Azure and Canonical Ubuntu Linux Have a User Privacy Issue

    Microsoft Azure and Canonical Ubuntu Linux Have a User Privacy Issue

    Chrome Sync Feature Exploited

    Hackers May Use Malicious Chrome Sync Feature to Steal Your Data

    Google Fixes Zero-day Vulnerability in Chrome 88.0.4324.150

    Google Fixes Zero-day Vulnerability in Chrome 88.0.4324.150

    RiskIQ Releases a Tool That Can Create Phishing Pages In Real-Time

    RiskIQ Releases a Tool That Can Create Phishing Pages In Real-Time

    Microsoft Releases EDR Capabilities for Linux Server

    Microsoft Releases EDR Capabilities for Linux Server

    Trending Tags

    • cybersecurity
    • Cloud Security
    • network security
    • WordPress Security
    • Secure Colocation Facility
  • Linux
    Ubuntu 20.04.2 LTS Re-Released

    Ubuntu 20.04.2 LTS Re-Released Due to OEM Install Bug

    Linux Kernel 5.11

    Linus Torvalds Declares First Linux Kernel 5.11 Release Candidate (RC)

    Major Linux Kernel Update Released to Fix 14 Vulnerabilities

    Major Linux Kernel Update Released to Fix 14 Vulnerabilities

    Linux Kernel 5.8

    Linux Kernel 5.8 Reaches EOL, Users Advised to Upgrade to Linux 5.9 Series

    Oracle Linux 7.9

    Oracle Linux 7.9 Update: Oracle Releases Oracle Linux 7.9

    Red Hat Enterprise Linux 8.3 beta now available

    Red Hat Enterprise Linux 8.3 beta now available

    Trending Tags

    • Linux Kernel
    • Linux Torvalds
    • Oracle Linux latest news
    • Oracle Linux latest update
  • More
    • Big Data
    • Blockchain
    • Games
    • Hardware
    • Software
    • Windows
    • Press Release
No Result
View All Result
Cloud Host News
No Result
View All Result
Home Security

Critical bug in ThemeGrill Demo Importer Plugin Affects 200,000 Sites

Roger Morales by Roger Morales
February 20, 2020
in Security
0 0
0
ThemeGrill Demo Importer

Critical bug in ThemeGrill Demo Importer Plugin Affects 200,000 Sites

A critical bug is found in the popular WordPress theme plugin, ThemeGrill Demo Importer. That gives admin access to hackers.

WebARX security researcher recently found a bug in the popular WordPress theme plugin ThemeGrill Demo Importer. This plugin has free access to those who buy ThemeGrill WordPress theme. It enables admin to import demo widget, content and default setting from ThemeGrill. This ThemeGrill plugin has more than 2000,000 active installations.

According to security researcher WebARX, Once you install ThemeGrill theme and activate it. It allows users to access the entire database, you can edit, update or even can able to delete the whole database whether the user is admin and running code is authenticated. Technically, When Theme Grill Demo Importer plugin found that a ThemeGrill theme is installed & activated, it loads the file from file manager /includes/class-demo-importer.php which attach reset_wizard_actions into admin_init on line 44.

As WebARX report ThemeGrill Demo Importer has serious bug or vulnerability and can cause a major amount of damage.

Even they add that this serious vulnerability roughly exists for 3 years. since 1.2.4 version. On February 16, 2020, A patched version 1.6.2 was released. The user of ThemeGrill theme can get an automatic plugin update. And, WordPress also add a warning on the Dashboard with a notification to update their plugin.

Looking for more security news? Stay tuned for the latest update news, subscribe to our newsletter to get latest updates.

Premium WordPress Themes Download
Download Best WordPress Themes Free Download
Free Download WordPress Themes
Download Premium WordPress Themes Free
udemy paid course free download
download coolpad firmware
Download WordPress Themes
udemy course download free

Oh hi, there 👋 It’s nice to meet you.

Sign up to receive daily news update in your inbox.

We don’t spam! Read our privacy policy for more info.

Check your inbox or spam folder to confirm your subscription.

ShareTweetShare
Previous Post

101domain partnered with Cloudflare | Cloudhostnews

Next Post

WordPress 5.4 Beta 2 Version Released | Cloudhostnews

Roger Morales

Roger Morales

Professional & passionate blogger by heart. Write various topics like web hosting, cloud computing, Linux, datacenter, reviews, the latest hosting news, etc. He is working on many popular blogs and also works as a technical Analyst.

Related Posts

Subscribe to our newsletter for the latest security news right from the security and research industries.
Security

Microsoft Announced SolarWinds Hackers Downloaded Some Azure, Exchange Source Code

February 19, 2021
Microsoft Azure and Canonical Ubuntu Linux Have a User Privacy Issue
Security

Microsoft Azure and Canonical Ubuntu Linux Have a User Privacy Issue

February 16, 2021
Chrome Sync Feature Exploited
Security

Hackers May Use Malicious Chrome Sync Feature to Steal Your Data

February 9, 2021
Google Fixes Zero-day Vulnerability in Chrome 88.0.4324.150
Security

Google Fixes Zero-day Vulnerability in Chrome 88.0.4324.150

February 5, 2021
RiskIQ Releases a Tool That Can Create Phishing Pages In Real-Time
Security

RiskIQ Releases a Tool That Can Create Phishing Pages In Real-Time

January 29, 2021
Microsoft Releases EDR Capabilities for Linux Server
Security

Microsoft Releases EDR Capabilities for Linux Server

January 13, 2021
SolarWinds Hackers Accessed Microsoft Source Code
Security

SolarWinds Hackers Accessed Microsoft Source Code

January 1, 2021
Atos Announced Accomplishment of SEC Consult Acquisition
Security

Atos Announced Accomplishment of SEC Consult Acquisition

December 23, 2020
Microsoft Released Fix For Windows 10 CHKDSK Bug Which Caused Boot Failures
Security

Microsoft Released Fix For Windows 10 CHKDSK Bug Which Caused Boot Failures

December 22, 2020
Load More
Next Post
WordPress 5.4 Beta 2 Version Released

WordPress 5.4 Beta 2 Version Released | Cloudhostnews

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

cheap linux hostingcheap linux hostingcheap linux hosting
ADVERTISEMENT

Follow Us

Trending News

Microsoft To Establish First Data Center Region in Indonesia

Microsoft To Establish First Data Center Region in Indonesia

February 25, 2021
Super Micro Computer Advancing on New Multi-Node GPU Solution

Super Micro Computer Advancing on New Multi-Node GPU Solution

February 24, 2021
Bitcoin Plummeted $8000 After Elon Musk's Concerns Over Rally

Bitcoin Plummeted $8000 After Elon Musk’s Concerns Over Rally

February 23, 2021
Red Hat's OpenShift Platform Released on IBM Power Virtual Servers

Red Hat’s OpenShift Platform Released on IBM Power Virtual Servers

February 23, 2021
Subscribe to our newsletter for the latest security news right from the security and research industries.

Microsoft Announced SolarWinds Hackers Downloaded Some Azure, Exchange Source Code

February 19, 2021
Cloud Host News

Find the best web hosting news, articles, reviews, tutorials, solution and latest videos related to cloud computing , hosting, security, Linux, domain & more.

Categories

  • Blockchain
  • Cloud
  • Data Centers
  • Games
  • Hardware
  • Hosting
  • Linux
  • Network/Internet
  • Press Release
  • Security
  • Software
  • Windows

Search

No Result
View All Result

Pages

  • About Us
  • Contact Us
  • Deals & Coupons
  • Home
  • Privacy Policy
  • Terms & Conditions

© 2020 Cloudhostnews - Technology News Updates Cloudhostnews. Privacy Policy & Terms & Conditions

No Result
View All Result
  • Home
  • Hosting
  • Cloud
  • Network/Internet
  • Security
  • Linux
  • More
    • Big Data
    • Blockchain
    • Games
    • Hardware
    • Software
    • Windows
    • Press Release

© 2020 Cloudhostnews - Technology News Updates Cloudhostnews. Privacy Policy & Terms & Conditions

Login to your account below

Forgotten Password? Sign Up

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In