[wp-hackers] WordPress <= 2.8.5 Unrestricted File Upload Arbitrary PHP Code Execution

Eric Marden wp at xentek.net
Thu Nov 12 22:12:51 UTC 2009


On Nov 12, 2009, at 4:37 PM, Otto wrote:

> I'd prefer an actual fix to my Apache configuration which prevents the
> file from executing in the first place.


Sounds like it would make a good plugin ;)


- Eric Marden
__________________________________
http://xentek.net/code/wordpress/
tw: @xentek






More information about the wp-hackers mailing list