Go Back   5 Star Affiliate Marketing Forums > SEO, Blogging & Internet Marketing Forums > RSS Marketing & Blogging Forums

RSS Marketing & Blogging Forums Bloggers ask your blogging questions here

Reply
 
Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 08-12-2009, 11:16 AM
minstrel's Avatar
5 Star Administrator
 
Join Date: Jan 2009
Location: So Can
Posts: 1,658
Default WordPress 2.84 fixes Reset Admin Password Vulnerability

WordPress <= 2.8.3 Reset Admin Password Vulnerability
by DK
August 11, 2009

Quote:
An exploit has been released for all current versions of WordPress including WordPress <= 2.8.3.

Laurent Gaffié who published the finding says:
An attacker could exploit this vulnerability to compromise the admin
account of any wordpress/wordpress-mu <= 2.8.3
From what I can tell the vulnerability allows an attacker to reset the admin user account without having a valid email address. This could certainly be used in a denial of service vulnerability, locking an admin out their site by continually changing the password.
...more

Upgrade to WordPress 2.84 either automatically via your Admin Control Panel or download and manually install WordPress 2.84 here.
Reply With Quote
The Following 2 Users Say Thank You to minstrel For This Useful Post:
Linda Buquet (08-12-2009), MzJme (08-12-2009)
  #2 (permalink)  
Old 08-15-2009, 02:02 PM
grangonzo's Avatar
5 Star New Member
 
Join Date: Aug 2009
Location: Durham, NC
Posts: 10
Default

Wow, that's scary. I will upgrade right away.
I doesn't sound good that some p**ck could compromise all my hard work.

Thanks for the info.
Reply With Quote
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are Off
Refbacks are Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
WordPress 2.8.2 fixes security vulnerability minstrel RSS Marketing & Blogging Forums 0 07-20-2009 09:25 AM


All times are GMT -7. The time now is 08:03 PM.


Powered by vBulletin® Version 3.8.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO © 2009, Crawlability, Inc.
©2005 - 2009 Linda Buquet - 5 Star Affiliate Programs