Netskope Threat Labs

SERVER-WEBAPP LiteSpeed Cache WordPress plugin unauthenticated privilege escalation attempt

IPS-NPA

1 SID: 306025

Detects an attempt to exploit CVE-2024-28000, a privilege escalation flaw that can grant higher access in LiteSpeed Cache WordPress plugin unauthenticated. The flaw saw active exploitation against sites running the vulnerable caching plugin.