Before you ask please READ THIS

wp.service.controller.xxxx vulnerability

in Rife Posts: 6
Hi,
My hosting provider just informed me of an important attack my install is suffering. They pointed out a file located into rife them plugin core files :

/home/myinstall/public_html/wp-content/themes/rife/fonts/glpslvad.php

I know the malware could have spread from anywhere and creating files in your folder but just wanted to report it here.

Either it's not coming from you and it's great or you may have been "backdoor'ed" and your plugin spreads the malware wherever it's being installed.

Thanks for keeping me informed. The vulnerability has leaked on almost all our websites and all of them use different variations of your theme.

Regards

Comments

  • AirAir
    Posts: 10,970
    Hey matt:-)

    Sad to hear you have are facing such issue.

    I have checked our files, and I don't see this file in any of the packages.

    I will try to get more info about this thing, to know if the theme could be used for this file to get into it.

    However, from my knowledge, this requires FTP or WP admin access, but I will try to get more info.

    Thanks for sharing.

    With kind regards.
Sign In or Register to comment.

Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!

In this Discussion