[wp-trac] [WordPress Trac] #13866: No dupe-checking on wp_users.display_name field allows impersonation attack, edge case privilege escalation venerability

WordPress Trac wp-trac at lists.automattic.com
Thu Oct 28 01:47:59 UTC 2010


#13866: No dupe-checking on wp_users.display_name field allows impersonation
attack, edge case privilege escalation venerability
--------------------------+-------------------------------------------------
 Reporter:  foxly         |        Owner:         
     Type:  defect (bug)  |       Status:  closed 
 Priority:  normal        |    Milestone:         
Component:  Users         |      Version:  2.9.2  
 Severity:  major         |   Resolution:  invalid
 Keywords:                |  
--------------------------+-------------------------------------------------
Changes (by nacin):

  * status:  new => closed
  * resolution:  => invalid
  * milestone:  Awaiting Review =>


-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/13866#comment:5>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list