Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <CAJznFrvPcbHvu9v0vFHPe-BqjSGr9vX5Ji9Rt8reEkbKg4n80A@mail.gmail.com>
Date: Mon, 25 Sep 2017 14:16:04 +0200
From: Slavco Mihajloski <slavco.mihajloski@...il.com>
To: oss-security@...ts.openwall.com
Subject: wordpress <= 4.8.1 SQLi

Isuue in wpdb->prepare() method guides to sqli in the wordpress.

https://wordpress.org/news/

https://medium.com/websec/wordpress-sqli-bbb2afcc8e94

PoC:
https://medium.com/websec/wordpress-sqli-poc-f1827c20bf8e

Regards,
Slavco

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.