[wp-trac] Re: [WordPress Trac] #5313: iframe being injected
WordPress Trac
wp-trac at lists.automattic.com
Tue Dec 11 20:15:48 GMT 2007
#5313: iframe being injected
------------------------+---------------------------------------------------
Reporter: Columcille | Owner: pishmishy
Type: defect | Status: assigned
Priority: high | Milestone: 2.5
Component: Security | Version: 2.3.1
Severity: major | Resolution:
Keywords: |
------------------------+---------------------------------------------------
Comment (by cbdilger):
I don't have access to MySQL logs (shared hosting) but I found this in my
webserver logs--there are 30 nearly identical entries over two days.
access.log.2007-11-29.gz:77.70.106.72 - - [29/Nov/2007:05:37:16 -0800]
"POST /cbd/wp-admin/admin-ajax.php HTTP/1.1" 200 14 "-" "Mozilla/4.0
(compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)"
this is in the right time frame---three days after the post I wrote which
was hit with the iframe.
I'll keep looking for other funny stuff. Any pointers appreciated. And I
can provide logs for WordPressers to work with.
--
Ticket URL: <http://trac.wordpress.org/ticket/5313#comment:4>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software
More information about the wp-trac
mailing list