daily gadgets, computers, and electronic news
14/08
2005

Wordpress v1.5.1.3 Exploit

Sponsored Links

WordPress LogoIf you’re using Wordpress v1.5.1.3, you should aware of the latest exploit found on this latest Wordpress version. SecuriTeam posted this exploit on August 10th, as quoted below (via LiewCF):

A vulnerability in WordPress’s handling of incoming cookie information allows remote attackers to cause the program to execute arbitrary code if the PHP settings of register_globals has been set to On.

To protect your blog, you can choose between these 2 solution:

  1. From Tamba2, edit .htaccess file that covered your blog and add the following line:
    php_flag register_globals off
  2. From Kamigoroshi, if you’re too lazy to edit the file, just download the fix here, and upload it to your blog directory. It will replace wp-settings.php file.

That’s it, you’re now immune to the remote attack caused by this exploit. It’s easy and take less than 5 minutes, so you should do it a.s.a.p before it’s too late :d

Wordpress v1.5.1.3 Exploit is written by cosa and posted under WordPress , , , , . If you like it, you might consider subscribing to our feed, follows us on Twitter, or receive our latest posts via email. Or else, you could also or store it to your favourite social bookmark sites. Further information about this article can be found.
And while you're here, why don't you check out our other articles:

3 Comments »

No comments yet.

Leave a comment