[wp-forums] Security?

Scott Merrill skippy at skippy.net
Sun Dec 4 20:47:59 GMT 2005


Robert Deaton wrote:
> I had Podz remove it, as it is a somewhat legit vulnerability.
> 
> On 12/4/05, Vicki Frei <vkaryl at allvantage.com> wrote:
> 
>>Well, I closed it after his kind of nasty reply to kaf's post, before it could
>>get any worse.... always can reopen of course.
>>
>>V
>>
>>On 12/4/2005 1:27:50 PM, Podz (podz at tamba2.org.uk) wrote:
>>
>>>I'm getting feedback in #wordpress right now.
>>>
>>>
>>>
>>>Kaf Oseo wrote:
>>>
>>>>http://wordpress.org/support/topic/51178
>>>>
>>>>Mods: do as you feel necessary.

Please try not to top-post, folks.  It makes it considerably harder to
reply to multiple messages in a thread in order.

The exploit requires an admin to click a link to launch the attack.  I'd
say that the risk is fairly low, though certainly present.

-- 
skippy at skippy.net | http://skippy.net/

gpg --keyserver pgp.mit.edu --recv-keys 9CFA4B35
506C F8BB 17AE 8A05 0B49  3544 476A 7DEC 9CFA 4B35


More information about the wp-forums mailing list