Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Vulnerabilities
#2
Interesting, I’m going to be forwarding this to Chris.

I’ll also try them out, but it feels like only one of them is feasible because everything else makes use of files in the admin directory and those PHP files should just redirect to the login form when you’re not logged in. If you are logged in when doing this, well frankly, you’d be an idiot because you can just use the upload panel to upload a PHP file to take control of anything on the server.
“Don’t forget the important ˚ (not °) on the a,” says the Unicode lover.
Help us test a key change for the core! ¶ Problems with GetSimple? Be sure to enable debug mode!
Reply


Messages In This Thread
Vulnerabilities - by juliancc - 2010-07-20, 04:35:34
Vulnerabilities - by Zegnåt - 2010-07-20, 04:46:15
Vulnerabilities - by Zegnåt - 2010-07-20, 05:29:38



Users browsing this thread: 2 Guest(s)