WordPress Exploits

Forumite Members General Topics Tech Security Talk WordPress Exploits

Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts
  • #39826
    Ed PEd P
    Participant
      @edps
      Forumite Points: 39

      Lee, I assume that you already have seen the news about WordPress (again) exploits. link

      What intrigued me was that one of the exploits piggybacked on a visible user name and a bug that allowed all Forumites to become administrators without needing a password. Not sure how that can be handled in forums. Maybe we all need aliases to stop any future privilege escalation bugs!

      #39833
      RSBRSB
      Keymaster
        @bdthree
        Forumite Points: 5,185

        Cheers @edps I have the site nailed down as much as I can without affecting usabillity so it’s just a case of suck it and see. There’s no valuable info stored anyhow appart from an e-mail address. None the less the site needs to be updated as much as poss even if it leads to minor errors.

        Americans: Over Sexed, Over Payed and Over here, Wat Wat!

      Viewing 2 posts - 1 through 2 (of 2 total)
      • You must be logged in to reply to this topic.