[wp-trac] [WordPress Trac] #11104: 2.8.5 Injection Exploit

WordPress Trac wp-trac at lists.automattic.com
Wed Nov 11 08:19:56 UTC 2009


#11104: 2.8.5 Injection Exploit
--------------------------+-------------------------------------------------
 Reporter:  bradyk        |       Owner:  ryan                                   
     Type:  defect (bug)  |      Status:  new                                    
 Priority:  high          |   Milestone:  Unassigned                             
Component:  Security      |     Version:  2.8.5                                  
 Severity:  blocker       |    Keywords:  exploit, injection, hack, malware, porn
--------------------------+-------------------------------------------------
Changes (by bradyk):

  * priority:  normal => high


Comment:

 Except that the gateway to all of this is via Wordpress.

 The only exception to that is one instance of Drupal (that I've seen), and
 even then it's not a huge stretch to write one for Wordpress and another
 for Drupal.

 --Kyle

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/11104#comment:2>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list