[wp-hackers] [daniel.leidert.spam@gmx.net: Debian Wordpress package exploitable by GeSHi local PHP file inclusion?]

Peter Westwood peter.westwood at ftwr.co.uk
Fri Sep 30 06:15:30 GMT 2005


Robert Deaton wrote:
> This looks like a problem with Geshi, which is apparently a mod for
> WordPress that adds some sort of syntax highlighting, and is unrelated
> to WordPress itself since Geshi is vunerable on multiple platforms.
> 

GeSHi is a generic syntax hilighter as far as I could tell when this 
came up on the support forums yesterday.

There is at least one plugin that uses it that _may_ be affected:
http://dev.wp-plugins.org/wiki/GeshiSyntaxColorer

westi
-- 
Peter Westwood
http://blog.ftwr.co.uk


More information about the wp-hackers mailing list