[wp-trac] [WordPress Trac] #13046: System Path Disclosure

WordPress Trac wp-trac at lists.automattic.com
Mon Apr 19 06:06:33 UTC 2010


#13046: System Path Disclosure
--------------------------+-------------------------------------------------
 Reporter:  lostsnow      |        Owner:            
     Type:  defect (bug)  |       Status:  closed    
 Priority:  normal        |    Milestone:            
Component:  Themes        |      Version:  2.9.2     
 Severity:  normal        |   Resolution:  worksforme
 Keywords:                |  
--------------------------+-------------------------------------------------
Changes (by nacin):

  * priority:  highest omg bbq => normal
  * status:  new => closed
  * resolution:  => worksforme
  * severity:  critical => normal
  * milestone:  Unassigned =>


Comment:

 This is a "vulnerability" ultimately rooted in display_errors = 1.

 Courtesy of the PHP manual:
 > Note: This is a feature to support your development and should never be
 used on production systems (e.g. systems connected to the internet).

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/13046#comment:1>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list