[wp-trac] [WordPress Trac] #52544: Removing database tables allows anyone to take over all website files

WordPress Trac noreply at wordpress.org
Tue Mar 30 13:09:05 UTC 2021


#52544: Removing database tables allows anyone to take over all website files
-----------------------------+------------------------------
 Reporter:  winternetstudio  |       Owner:  (none)
     Type:  enhancement      |      Status:  new
 Priority:  normal           |   Milestone:  Awaiting Review
Component:  Security         |     Version:  5.6.1
 Severity:  major            |  Resolution:
 Keywords:                   |     Focuses:
-----------------------------+------------------------------

Comment (by m0ze):

 Replying to [comment:10 winternetstudio]:

 > You can think whatever you want - but your assumptions are incorrect.

 > which I don't think hold water at all.

 So do you. Just an opinions.

 > I understand that you rather want to keep an unneeded feature than help
 alleviating potential security problems. Got it. Ciao.

 This is a "security problem" only in your imagination, when you are
 careless and don't check the results of your work, so that in the end
 another website is left without tables in the database. We all make
 mistakes sometimes, the question is what we do next.

 > of course I should have been more careful.

 That's the point. End of the story.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/52544#comment:11>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list