Web Application Security
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: [CentOS] WordPress possilbe SQL injections [was: SELinux - wayof the future or good idea but !!!] Dec 22 2010 03:49PM
Leonard den Ottolander (leonard den ottolander nl)
On Tue, 2010-12-21 at 13:44 +0100, Leonard den Ottolander wrote:
> The patch shown in
> http://core.trac.wordpress.org/changeset/16625
>
> prompted me to try a
>
> $ grep -r "\=\ \%s\"" *
>
> in the web root of a WordPress installation. The matches are a bunch of
> possible SQL injections. Haven'...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus