Voltata theme update needed
-
Hi, this theme now has an WordPress alert ‘This theme hasn’t been updated in over 2 years. It may no longer be maintained or supported and may have compatibility issues when used with more recent versions of WordPress’. Please advise if you will be updating the theme as I have been contacted by my hosting company with the following issues:
2 vulnerabilities in Joomla: public_html/plugins/authentication/ldap.php
XSS vulnerability in Joomla (Lack of escaping in the module chromes leads to XSS vulnerabilities in the module system.): public_html/templates/system/html/modules.php
XSS vulnerability in Joomla (Inadequate escaping leads to XSS vulnerability in mail component. Affected Installs: Joomla! CMS versions 1.6.0 through 3.6.0): public_html/components/com_mailto/views/mailto/tmpl/default.php
Privilege escalation vulnerability in Joomla (Inadequate permission checking allows unauthorised viewing of administrative back end information.): public_html/administrator/includes/helper.php
Information disclosure vulnerability in Joomla (Weak encryption causes potential information disclosure.): public_html/plugins/system/remember.php
Vulnerabilities such as these can allow third parties to access your web hosting package and abuse this through e.g. uploading malware for various purposes. We strongly recommend you check the entire web hosting package for other files that appear out of place, which our detection system might have missed.Many thanks
- The topic ‘Voltata theme update needed’ is closed to new replies.