[wp-trac] Re: [WordPress Trac] #5313: iframe being injected

WordPress Trac wp-trac at lists.automattic.com
Tue Dec 11 20:15:48 GMT 2007


#5313: iframe being injected
------------------------+---------------------------------------------------
 Reporter:  Columcille  |        Owner:  pishmishy
     Type:  defect      |       Status:  assigned 
 Priority:  high        |    Milestone:  2.5      
Component:  Security    |      Version:  2.3.1    
 Severity:  major       |   Resolution:           
 Keywords:              |  
------------------------+---------------------------------------------------
Comment (by cbdilger):

 I don't have access to MySQL logs (shared hosting) but I found this in my
 webserver logs--there are 30 nearly identical entries over two days.

 access.log.2007-11-29.gz:77.70.106.72 - - [29/Nov/2007:05:37:16 -0800]
 "POST /cbd/wp-admin/admin-ajax.php HTTP/1.1" 200 14 "-" "Mozilla/4.0
 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)"

 this is in the right time frame---three days after the post I wrote which
 was hit with the iframe.

 I'll keep looking for other funny stuff. Any pointers appreciated. And I
 can provide logs for WordPressers to work with.

-- 
Ticket URL: <http://trac.wordpress.org/ticket/5313#comment:4>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list