View Single Post
Old 09-08-2008, 03:26 AM  
MoreMagic
Confirmed User
 
MoreMagic's Avatar
 
Join Date: Feb 2006
Posts: 2,848
Hee stop playing security agent, still waiting on our themes

Quote:
Originally Posted by Ecchi22 View Post
There's new Wordpress exploit out there that can be dangerous..

Affected version is the newest one (2.6.1) and it works only if you have enabled user registration option.. It is disabled by default, so if you don't know what it is, relax.. But if you have it turned on, I'd recommend you to disable it for now, until someone post solution to this.

Attacker can change the Administrator password (but the real admin will receive the new password on his e-mail, so you'll notice it for sure)

Source: http://www.milw0rm.com/exploits/6397

MoreMagic is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote