[Full-disclosure] Dumbest bug of this month - Wordpress 2.8

omglol at hushmail.me omglol at hushmail.me
Sat Aug 1 21:16:27 BST 2009


1. Visit <rantingwhitehatblog>.com and register as a subscriber
2. Visit wp-admin//options-writing.php and post gay p0rn using the 
noted e-mail address. / Search for interesting unprotected Plugin 
pages to gain shell

greetings to ZFO
and have fun at defcon

(bug was leaked to wp-security team so .. be quick :D )



Full-Disclosure is hosted and sponsored by Secunia.