Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
WordPress 3.5.1, Denial of Service
Jun 07 2013 04:29PM
Krzysztof Katowicz-Kowalewski (vnd vndh net)
Version 3.5.1 (latest) of popular blogging engine WordPress suffers from remote denial of service vulnerability. The bug exists in encryption module (class-phpass.php). The exploitation of this vulnerability is possible only when at least one post is protected by a password.
[ more ]
Copyright 2010, SecurityFocus