Command Execution Vulnerability in WordPress Affecting all Versions

    Date: 08/13/05 (Java Web)    Keywords: php

    A command execution vulnerability has been found in WordPress's handling of incoming cookie information which allows remote attackers to cause the program to execute arbitrary code if the PHP settings of register_globals has been set to On. Already a perl and php exploit is available. It affects WordPress version 1.5.1.3 and before when register_globals is [...]

    Source: http://blog.taragana.com/index.php/archive/command-execution-vulnerability-in-wordpress-affecting-all-versions/

« How to Podcast Using... || Email Subscription System... »


antivirus | apache | asp | blogging | browser | bugtracking | cms | crm | css | database | ebay | ecommerce | google | hosting | html | java | jsp | linux | microsoft | mysql | offshore | offshoring | oscommerce | php | postgresql | programming | rss | security | seo | shopping | software | spam | spyware | sql | technology | templates | tracker | virus | web | xml | yahoo | home