WP-Forum Plugin Security Bulletin

Posted by admin in Wordpress Plugins, W... | 01.22.2008 - 5:02 am

If you are currently using the latest release of the WP-Forum plugin, listen up. The websec security team has discovered a vulnerability within this plugin that can be exploited by malicious users to conduct SQL injection attacks. According to Secunia:
Input passed to the “user” parameter in the WordPress installation’s index.php script (when “forumaction” is set to “showprofile” and “page_id” to a page with the “<!–WPFORUM–>” tag) is not properly sanitised before being used in SQL queries. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.

This vulnerability when exploited successfully allows the individual to retrieve usernames, password hashes, and email addresses for all users, including administrators. However, the user has to have knowledge of the proper database table prefix. This vulnerability has been confirmed in version 1.7.4 which is currently the most recent version available for download.
Description:
WP-Forum is a WordPress plugin that enables […]

Original post by Jeffro2pt0

    Technorati Tags:

    Related Posts:
  1. Comment Remix Security Bulletin
  2. ...
  3. 2in1 Security Bulletin
  4. ...
  5. 2 Plugin Security Bulletins
  6. ...
  7. Maximum WordPress Security
  8. ...
  9. Photo Album Plugin Vulnerabilities
  10. ...
  11. Plugin Review: Simple:Press Forum
  12. ...
  13. Mark Jaquith on WordPress Theme and Plugin Security
  14. ...
  15. 10 Security Plugins For WP
  16. ...
  17. WordPress 3.0.4 Security Release
  18. ...
  19. WordPress Plugin Security Showdown
  20. ...
  21. How To improve basic security on a fresh WordPress install
  22. ...
  23. WordPress Forum User Guide
  24. ...
  25. WordPress Support Forum All-stars
  26. ...
  27. 24 Ways To Contribute To WordPress
  28. ...
  29. WordPress security monitoring and diagnosis
  30. ...

  31. No Comments on "WP-Forum Plugin Security Bulletin" »

    No comments yet.

    Leave a comment