[Full-disclosure] WordPress Search Function SQL-Injection

ascii ascii at katamail.com
Wed Feb 28 00:26:13 GMT 2007


Justin Frydman - Thinkweb Media wrote:
> Can't replicate this in 2.0.7. Is this only for the 2.1.x branch then?

i have the same feeling

tested on multiple wp instances and can't reproduce on >= 2.0.1 <= 2.0.7

regards, Francesco 'ascii' Ongaro
http://www.ush.it/




Full-Disclosure is hosted and sponsored by Secunia.