{"id":157986,"date":"2022-05-21T04:19:04","date_gmt":"2022-05-21T06:19:04","guid":{"rendered":"https:\/\/teknomers.com\/fr\/des-chercheurs-trouvent-une-porte-derobee-dans-le-plugin-de-gestion-scolaire-pour-wordpress\/"},"modified":"2022-05-21T04:19:10","modified_gmt":"2022-05-21T06:19:10","slug":"des-chercheurs-trouvent-une-porte-derobee-dans-le-plugin-de-gestion-scolaire-pour-wordpress","status":"publish","type":"post","link":"https:\/\/teknomers.com\/fr\/des-chercheurs-trouvent-une-porte-derobee-dans-le-plugin-de-gestion-scolaire-pour-wordpress\/","title":{"rendered":"Des chercheurs trouvent une porte d\u00e9rob\u00e9e dans le plugin de gestion scolaire pour WordPress"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div id=\"articlebody\">\n<div class=\"separator\" style=\"clear: both\"><\/div>\n<p>Plusieurs versions d&#8217;un plugin WordPress du nom de &#8220;School Management Pro&#8221; abritaient une porte d\u00e9rob\u00e9e qui pouvait accorder \u00e0 un adversaire un contr\u00f4le complet sur les sites Web vuln\u00e9rables.<\/p>\n<p>Le probl\u00e8me, rep\u00e9r\u00e9 dans les versions premium ant\u00e9rieures \u00e0 la 9.9.7, s&#8217;est vu attribuer l&#8217;identifiant CVE <a rel=\"nofollow noopener\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2022-1609\" target=\"_blank\">CVE-2022-1609<\/a> et est not\u00e9 10 sur 10 pour la gravit\u00e9.<\/p>\n<p>La porte d\u00e9rob\u00e9e, qui existerait depuis la version 8.9, permet &#8220;\u00e0 un attaquant non authentifi\u00e9 d&#8217;ex\u00e9cuter du code PHP arbitraire sur des sites sur lesquels le plugin est install\u00e9&#8221;, a d\u00e9clar\u00e9 Harald Eilertsen de Jetpack. <a rel=\"nofollow noopener\" href=\"https:\/\/jetpack.com\/blog\/backdoor-found-in-the-school-management-pro-plugin-for-wordpress\/\" target=\"_blank\">mentionn\u00e9<\/a> dans un article du vendredi.<\/p>\n<p>School Management, d\u00e9velopp\u00e9 par une soci\u00e9t\u00e9 bas\u00e9e en Inde appel\u00e9e <a rel=\"nofollow noopener\" href=\"https:\/\/weblizar.com\/plugins\/school-management\/\" target=\"_blank\">Weblizar<\/a>, est pr\u00e9sent\u00e9 comme un module compl\u00e9mentaire WordPress pour &#8220;g\u00e9rer le fonctionnement complet de l&#8217;\u00e9cole&#8221;.  Il revendique \u00e9galement plus de 340 000 clients de ses th\u00e8mes et plugins WordPress premium et gratuits.<\/p>\n<p>La soci\u00e9t\u00e9 de s\u00e9curit\u00e9 WordPress a not\u00e9 qu&#8217;elle avait d\u00e9couvert l&#8217;implant le 4 mai apr\u00e8s avoir \u00e9t\u00e9 alert\u00e9e de la pr\u00e9sence d&#8217;un code fortement obscurci dans le code de v\u00e9rification de licence du plugin.  Le <a rel=\"nofollow noopener\" href=\"https:\/\/wordpress.org\/plugins\/school-management-system\/\" target=\"_blank\">version gratuite<\/a> of School Management, qui ne contient pas le code de licence, n&#8217;est pas impact\u00e9.<\/p>\n<div class=\"ad_two clear\"><a rel=\"nofollow noopener\" href=\"https:\/\/go.thn.li\/crowdsec-tour-d\" target=\"_blank\" title=\"CyberSecurity\"><img loading=\"lazy\" decoding=\"async\" alt=\"La cyber-s\u00e9curit\u00e9\" class=\"lazyload\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2022\/04\/1650021915_454_Haskers-Gang-donne-gratuitement-le-logiciel-malveillant-ZingoStealer-a-dautres.jpg\" width=\"728\" height=\"90\" \/><\/a><\/div>\n<p>Bien que la porte d\u00e9rob\u00e9e ait \u00e9t\u00e9 supprim\u00e9e depuis, les origines exactes de la compromission restent floues, le fournisseur d\u00e9clarant qu'&#8221;il ne sait pas quand ni comment le code est entr\u00e9 dans son logiciel&#8221;.<\/p>\n<p>Il est recommand\u00e9 aux clients du plugin de mettre \u00e0 jour vers la derni\u00e8re version (9.9.7) pour emp\u00eacher les tentatives d&#8217;exploitation actives.<\/p>\n<p><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/thehackernews.com\/2022\/05\/researchers-find-backdoor-in-school.html\" rel=\"nofollow noopener\" target=\"_blank\">ttn-fr-57<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Plusieurs versions d&#8217;un plugin WordPress du nom de &#8220;School Management Pro&#8221; abritaient une porte d\u00e9rob\u00e9e qui pouvait accorder \u00e0 un adversaire un contr\u00f4le complet sur les sites Web vuln\u00e9rables. Le probl\u00e8me, rep\u00e9r\u00e9 dans les versions premium ant\u00e9rieures \u00e0 la 9.9.7, s&#8217;est vu attribuer l&#8217;identifiant CVE CVE-2022-1609 et est not\u00e9 10 sur 10 pour la gravit\u00e9. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":157987,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[12848,4168,4158,4165,4161,429,7084,133,8945,4157,4159,4171,4170,4167,4160,4163,4162,51599,2742,185,13630,4172,4169,12850,196,4166,4164,51600],"class_list":["post-157986","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technologie","tag-chercheurs","tag-comment-pirater","tag-cyber-actualites","tag-cyber-attaques","tag-cyber-mises-a-jour","tag-dans","tag-derobee","tag-des","tag-gestion","tag-lactualite-de-la-cybersecurite","tag-lactualite-de-la-cybersecurite-aujourdhui","tag-lactualite-des-hackers","tag-la-securite-des-informations","tag-logiciel-malveillant-de-ransomware","tag-mises-a-jour-de-la-cybersecurite","tag-nouvelles-de-piratage","tag-nouvelles-de-pirates","tag-plugin","tag-porte","tag-pour","tag-scolaire","tag-securite-informatique","tag-securite-internet","tag-trouvent","tag-une","tag-violation-de-donnees","tag-vulnerabilite-logicielle","tag-wordpress"],"_links":{"self":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/157986","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/comments?post=157986"}],"version-history":[{"count":0,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/157986\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media\/157987"}],"wp:attachment":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media?parent=157986"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/categories?post=157986"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/tags?post=157986"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}