• Resolved Ash

    (@ashjeyes)


    Hi,

    My instance seems to be finding any user that looks at a page with captcha, that this is malicious activity. This is causing a lot of lockouts.

    The “probing for vulnerable code” URL is below.

    Grateful for any views on this.

    /wp-content/plugins/wpdiscuz/utils/captcha/[email protected]

Viewing 2 replies - 1 through 2 (of 2 total)
  • Plugin Author gioni

    (@gioni)

    Hi!

    Is it real URL that is generated and used by some plugin? I’m asking because it’s malformed (kinda fake, non-existing). Plus it contains an executable .php extension. Cerber doesn’t like such malformed URLs and consider them suspicious. They must not be used in properly designed software.

    If you believe that everything is OK with that URL, you can tell Cerber to ignore it: https://wpcerber.com/wordpress-probing-for-vulnerable-php-code/

    Thread Starter Ash

    (@ashjeyes)

    Hey,

    Thanks for the help really appreciate it! Sorted my issue.

    Cheers

Viewing 2 replies - 1 through 2 (of 2 total)