Skip to main content

Tag: xecurify

1 article

WordPress login screen on laptop with blurred office background.

Attackers Exploit miniOrange SAML Flaws to Hijack WordPress Admin Access

A critical vulnerability in the Xecurify miniOrange SAML 2.0 Single Sign On plugin for WordPress allows hackers to hijack admin access with just a few clicks, giving them the keys to your site's kingdom. This flaw lets unauthenticated attackers log in as any existing user, including administrators, by exploiting a weakness in signature verification.

Analyst 207