Please help! MSM is a great plugin to backup and upgrade all your WordPress sites at once. Please do me a big favour and rate this plugin at the WLTC plugin competition! It takes just 10 seconds, then you can go on enjoying the free software provided at this site!

Exploit for WordPress available

Alex Günsche · January 10, 2007

There is an exploit for WordPress available which reveals the admin user and the hashed admin password. WordPress versions lower than 2.0.6 on servers with register_globals=On are vulnerable. (The exploit script suggests that 2.0.6 is also affected, but this couldn’t be reproduced so far.) Everybody is urged to update to 2.0.6 as soon as possible.

Wikipedia provides some background on SQL injection exploits.

Comment on this article

 (not published)


Comments can be revised for 30 minutes after publishing.