Wordpress 2.1.1 with backdoor

« 2 March 2007 | 23:50 | Security | 1 Comment | 3,347 Views »

Wordpress security warning! “If you downloaded WordPress 2.1.1 from wordpress.org within the past 3-4 days, your files may include a security exploit that was added by a cracker, and you should upgrade all of your files to 2.1.2 immediately”. Please check



SQL Injection in Wordpress 2.1.1

« 1 March 2007 | 15:47 | Security | 2 Comments | 2,878 Views »

Upgrading to wordpress 2.1.1 was urgent, but we still have SQL injections, path disclosures and cross site scripting problems in this version! My colleague Sebastian Krause has some examples:



TLA | Linklift | Teliad