Filed Under (Advisories, WordPress) by DK on 1 November 2007

MustLive got hold of us with some of his older WordPress advisories and vulnerabilities. Alot of these have already been fixed.

  • WP Directory Traversal Vulnerabilities (WP 2.0.x) - More Info
  • WordPress MU 1.1.1 newblog XSS - More Info
  • WordPress Theme XSS vulnerabilities - Sirius 1.0, Blix and Blix Rus, Pool 1.0.7, Classic 1.5
  • WP-ContactForm - More Info
  • Subscribe to Comments - More Info
  • WP-PHPList - More Info
  • WordPress 2.0.x XSS - More Info

Mustlive is also working on some new vulnerabilities which he has let us have a sneak preview at… very cool stuff and some excellent research.

We will update WP BlogWatch to reflect any new changes.

Read and Contribute to BlogSec News!

Comment
Name:
Email:
Website:
Message: