[wp-hackers] XML-RPC Exploit?

Pete Prodoehl pete.prodoehl at cygnusinteractive.com
Wed Jul 6 13:44:31 GMT 2005


Michael D Adams wrote:
> On Jul 5, 2005, at 11:03 PM, David Chait wrote:
> 
>> And, for all versions, if only using the built-in admin screens and  
>> not third party composition apps, can xmlrpc.php be deleted?  (I  
>> looked in the codex, didn't find a quick answer... I assume so, but  
>> prefer to not assume!)
> 
> 
> xmlrpc.php is used in pingback receiving.

So if you do not allow pingbacks, it's safe to delete it?

(Does it also handle trackbacks?)

Pete


More information about the wp-hackers mailing list