<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: WordPress Upload File Plugin SQL Injection</title>
	<atom:link href="http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/feed" rel="self" type="application/rss+xml" />
	<link>http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection</link>
	<description>Always something worth reading...</description>
	<lastBuildDate>Fri, 12 Mar 2010 11:09:45 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Nick</title>
		<link>http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/comment-page-1#comment-11567</link>
		<dc:creator>Nick</dc:creator>
		<pubDate>Tue, 03 Jun 2008 09:53:49 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/#comment-11567</guid>
		<description>I tried to look for the plugin mentioned, but no joy, there&#039;s &lt;a href=&quot;http://www.google.co.uk/search?q=site%3Ahttp%3A%2F%2Fsvn.wp-plugins.org%2F+wp-uploadfile&quot; rel=&quot;nofollow&quot;&gt;no reference to that file in the official plug-in svn&lt;/a&gt; either.</description>
		<content:encoded><![CDATA[<p>I tried to look for the plugin mentioned, but no joy, there&#8217;s <a href="http://www.google.co.uk/search?q=site%3Ahttp%3A%2F%2Fsvn.wp-plugins.org%2F+wp-uploadfile" rel="nofollow">no reference to that file in the official plug-in svn</a> either.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andrea_R</title>
		<link>http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/comment-page-1#comment-11549</link>
		<dc:creator>Andrea_R</dc:creator>
		<pubDate>Mon, 02 Jun 2008 17:27:18 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/#comment-11549</guid>
		<description>It appears to releate to a specific plugin, not wordpress itself.</description>
		<content:encoded><![CDATA[<p>It appears to releate to a specific plugin, not wordpress itself.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DK</title>
		<link>http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/comment-page-1#comment-11548</link>
		<dc:creator>DK</dc:creator>
		<pubDate>Mon, 02 Jun 2008 16:00:24 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/#comment-11548</guid>
		<description>Nick, your not missing anything at all. I assume they mean the upload page under wp-admin, however, the advisory is very vague.</description>
		<content:encoded><![CDATA[<p>Nick, your not missing anything at all. I assume they mean the upload page under wp-admin, however, the advisory is very vague.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nick</title>
		<link>http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/comment-page-1#comment-11547</link>
		<dc:creator>Nick</dc:creator>
		<pubDate>Mon, 02 Jun 2008 14:09:04 +0000</pubDate>
		<guid isPermaLink="false">http://blogsecurity.net/wordpress/wordpress-upload-file-plugin-sql-injection/#comment-11547</guid>
		<description>Maybe I&#039;m missing something, but wp-uploadfile.php doesn&#039;t appear to be a valid WP file?</description>
		<content:encoded><![CDATA[<p>Maybe I&#8217;m missing something, but wp-uploadfile.php doesn&#8217;t appear to be a valid WP file?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
