[wp-hackers] Rethinking check_admin_referer()

Matt Mullenweg m at mullenweg.com
Sat Apr 22 01:45:05 GMT 2006


Sam Angove wrote:
> For token `md5($end . DB_PASS . $action . $uid)`, can't you do:

Here's a hash of my database password:

ce5f9c026dbec8ca821ea3c702dc540c

When you figure it out, post to my blog.

-- 
Matt Mullenweg
  http://photomatt.net | http://wordpress.org
http://automattic.com | http://akismet.com


More information about the wp-hackers mailing list