WP-Forum Plugin Security Bulletin

Posted by admin in Wordpress Plugins, W... | 01.22.2008 - 5:02 am

If you are currently using the latest release of the WP-Forum plugin, listen up. The websec security team has discovered a vulnerability within this plugin that can be exploited by malicious users to conduct SQL injection attacks. According to Secunia:
Input passed to the “user” parameter in the WordPress installation’s index.php script (when “forumaction” is set to “showprofile” and “page_id” to a page with the “<!–WPFORUM–>” tag) is not properly sanitised before being used in SQL queries. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.

This vulnerability when exploited successfully allows the individual to retrieve usernames, password hashes, and email addresses for all users, including administrators. However, the user has to have knowledge of the proper database table prefix. This vulnerability has been confirmed in version 1.7.4 which is currently the most recent version available for download.
Description:
WP-Forum is a WordPress plugin that enables […]

Original post by Jeffro2pt0

    Technorati Tags:

    Related Posts:
  1. Comment Remix Security Bulletin
  2. ...
  3. 2in1 Security Bulletin
  4. ...
  5. 2 Plugin Security Bulletins
  6. ...
  7. Maximum WordPress Security
  8. ...
  9. 10 Security Plugins For WP
  10. ...
  11. Plugin Review: Simple:Press Forum
  12. ...
  13. Photo Album Plugin Vulnerabilities
  14. ...
  15. WordPress Forum User Guide
  16. ...
  17. 24 Ways To Contribute To WordPress
  18. ...
  19. How to get featured in our Daily Releases
  20. ...
  21. All In One SEO Lives On
  22. ...
  23. WordPress Plugin Competition Q&A
  24. ...
  25. WordPress Plugin Releases for 10/01
  26. ...
  27. Exporting-Importing A Category
  28. ...
  29. WordPress Plugin Releases for 10/15
  30. ...

  31. No Comments on "WP-Forum Plugin Security Bulletin" »

    No comments yet.

    Leave a comment