WP Hide & Security Enhancer

WP-Hide has launched a plugin that allows users to completely hide their WordPress core files, login page, theme and plugin paths from being shown on the front end. The plugin uses URL rewrite techniques and WordPress filters to apply all internal functionality and features, without any user intervention required. The plugin also allows users to change the default WordPress login URL from wp-admin and wp-login.php to something arbitrary, making it invisible to hackers. The plugin does not change any files or directories, making it a simple and secure way to clean up HTML by removing all WordPress fingerprints.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in WP Hide & Security Enhancer 2.5.1

    Fixed

    The WP Hide & Security Enhancer plugin for WordPress has a problem that could allow unauthorized people to delete important files on the server. This could cause the website to stop working or re...

    Read More
  • Information leakage vulnerability in WP Hide & Security Enhancer 1.3.9.2

    Fixed

    The WP Hide & Security Enhancer plugin for WordPress is not secure in versions before 1.4. Attackers can use this vulnerability to download any file, including the wp-config.php file which contai...

    Read More
  • Input validation vulnerability in WP Hide & Security Enhancer 1.7.9.2

    Fixed

    The WP Hide & Security Enhancer plugin for WordPress has a security flaw that allows unauthenticated attackers to inject malicious web scripts into pages. This flaw affects versions up to 1.7.9.2

    Read More