[wp-hackers] Security: Oracle and WordPress

Roy Schestowitz r at schestowitz.com
Thu Jun 22 18:27:03 GMT 2006

The following has just cropped up in the Topix Computer Science feed (6
hours ago). I thought I'd share it, just in case it needs to be addressed.

Oracle attack on Wordpress

,----[ Quote ]
| This post describes the second of two vulnerabilities I found in
| Wordpress. The first, a XSS vulnerability, was described last week. While
| the vulnerability discussed here is applicable in fewer cases than the
| previous one, it is an example of a comparatively rare class, oracle
| attacks, so I think merits further exposition.


