19 Sep 2019

Would This Settings Change Vulnerability in NBDesigner Be What Hackers Are Interested In?

As part of monitoring we do to make sure we are providing customers of our service with the best possible data on vulnerabilities in WordPress plugins they may be using we found that yesterday a hacker looks to be probing for usage of the plugin NBDesigner, which has 2,000+ installs, by requesting the following files:

  • /wp-content/plugins/web-to-print-online-designer/assets/js/dokan.js
  • /wp-content/plugins/web-to-print-online-designer/changelog.txt

That plugin was closed on the Plugin Directory on September 8 for an unspecified reason. [Read more]