[Full-disclosure] WordPress Search Function SQL-Injection

Biomech biomech at 2600uk.com
Wed Feb 28 12:21:04 GMT 2007


ascii wrote:
> Justin Frydman - Thinkweb Media wrote:
>   
>> Can't replicate this in 2.0.7. Is this only for the 2.1.x branch then?
>>     
>
> i have the same feeling
>
> tested on multiple wp instances and can't reproduce on >= 2.0.1 <= 2.0.7
>
> regards, Francesco 'ascii' Ongaro
> http://www.ush.it/
>
>   
Running 2.0.6, I get no effect with the latest Wordpress posts coming 
through SF.
Looks like its a new thing : )

Biomech




Full-Disclosure is hosted and sponsored by Secunia.