<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: WordPress Remote Admin Password Reset Vulnerability</title> <atom:link href="http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/feed/" rel="self" type="application/rss+xml" /><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/</link> <description>A technology news blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description> <lastBuildDate>Sun, 12 Feb 2012 04:50:20 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>By: rhe</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-1341749</link> <dc:creator>rhe</dc:creator> <pubDate>Sat, 21 May 2011 09:11:07 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-1341749</guid> <description>is there any plugins to avoid this vuln?</description> <content:encoded><![CDATA[<p>is there any plugins to avoid this vuln?</p> ]]></content:encoded> </item> <item><title>By: Fix Wordpress Remote Admin Password Reset</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-936265</link> <dc:creator>Fix Wordpress Remote Admin Password Reset</dc:creator> <pubDate>Thu, 10 Dec 2009 10:13:59 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-936265</guid> <description>[...] : ghacks.net, techyard.net      Tags: hack wordpress, reset password admin wordpress, wordpress, wp-login.php, [...]</description> <content:encoded><![CDATA[<p>[...] : ghacks.net, techyard.net      Tags: hack wordpress, reset password admin wordpress, wordpress, wp-login.php, [...]</p> ]]></content:encoded> </item> <item><title>By: Tutorial Library Tutlib for You life &#187; Blog Archive &#187; Wordpress 2.8.4 Security Update</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-866389</link> <dc:creator>Tutorial Library Tutlib for You life &#187; Blog Archive &#187; Wordpress 2.8.4 Security Update</dc:creator> <pubDate>Thu, 13 Aug 2009 04:13:24 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-866389</guid> <description>[...] noticed a security vulnerability in Wordpress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</description> <content:encoded><![CDATA[<p>[...] noticed a security vulnerability in WordPress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</p> ]]></content:encoded> </item> <item><title>By: Happy</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-866058</link> <dc:creator>Happy</dc:creator> <pubDate>Wed, 12 Aug 2009 14:22:04 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-866058</guid> <description>Just received 3 password changes to my blog this morning. I too thought the same thing, 2.8.4 may have addressed this.</description> <content:encoded><![CDATA[<p>Just received 3 password changes to my blog this morning. I too thought the same thing, 2.8.4 may have addressed this.</p> ]]></content:encoded> </item> <item><title>By: Internet and Technology News &#187; Blog Archive &#187; Wordpress 2.8.4 Security Update</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-866056</link> <dc:creator>Internet and Technology News &#187; Blog Archive &#187; Wordpress 2.8.4 Security Update</dc:creator> <pubDate>Wed, 12 Aug 2009 14:17:45 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-866056</guid> <description>[...] noticed a security vulnerability in Wordpress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</description> <content:encoded><![CDATA[<p>[...] noticed a security vulnerability in WordPress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</p> ]]></content:encoded> </item> <item><title>By: Wordpress Removes Bugs: Wordpress 2.8.4 Security Update &#124; Blogging Planet</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865997</link> <dc:creator>Wordpress Removes Bugs: Wordpress 2.8.4 Security Update &#124; Blogging Planet</dc:creator> <pubDate>Wed, 12 Aug 2009 11:55:04 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865997</guid> <description>[...] noticed a security vulnerability in Wordpress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</description> <content:encoded><![CDATA[<p>[...] noticed a security vulnerability in WordPress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</p> ]]></content:encoded> </item> <item><title>By: Wordpress 2.8.4 Security Update</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865930</link> <dc:creator>Wordpress 2.8.4 Security Update</dc:creator> <pubDate>Wed, 12 Aug 2009 09:15:39 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865930</guid> <description>[...] noticed a security vulnerability in Wordpress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</description> <content:encoded><![CDATA[<p>[...] noticed a security vulnerability in WordPress 2.8.3 yesterday (and earlier versions as well) that allowed [...]</p> ]]></content:encoded> </item> <item><title>By: Martin</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865890</link> <dc:creator>Martin</dc:creator> <pubDate>Wed, 12 Aug 2009 07:54:51 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865890</guid> <description>Avinash, the vulnerability does not give the attacker access to the Wordpress blog unless access the email account was hacked as well. Good tip about the Wordpress update, wonder why the blog is not showing that there is a new version available yet.</description> <content:encoded><![CDATA[<p>Avinash, the vulnerability does not give the attacker access to the WordPress blog unless access the email account was hacked as well. Good tip about the WordPress update, wonder why the blog is not showing that there is a new version available yet.</p> ]]></content:encoded> </item> <item><title>By: Wordpress 2.8.4 Security Release : Fixes Remote Password Reset Vulnerability &#124; TECH YARD</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865874</link> <dc:creator>Wordpress 2.8.4 Security Release : Fixes Remote Password Reset Vulnerability &#124; TECH YARD</dc:creator> <pubDate>Wed, 12 Aug 2009 07:14:44 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865874</guid> <description>[...] : GHacks &amp; Wordpress Blog.  var linkwithin_site_id = 34620; (function () { var elem = [...]</description> <content:encoded><![CDATA[<p>[...] : GHacks &amp; WordPress Blog.  var linkwithin_site_id = 34620; (function () { var elem = [...]</p> ]]></content:encoded> </item> <item><title>By: Avinash</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865869</link> <dc:creator>Avinash</dc:creator> <pubDate>Wed, 12 Aug 2009 07:03:09 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865869</guid> <description>Martin, What if admin is the only user ?? which many wp users use as default, wouldn&#039;t that give a complete access to the person, and there an wordpress update to 2.8.4 that fixes this issues now</description> <content:encoded><![CDATA[<p>Martin, What if admin is the only user ?? which many wp users use as default, wouldn&#8217;t that give a complete access to the person, and there an wordpress update to 2.8.4 that fixes this issues now</p> ]]></content:encoded> </item> <item><title>By: Rick Russell</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865396</link> <dc:creator>Rick Russell</dc:creator> <pubDate>Tue, 11 Aug 2009 15:54:59 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865396</guid> <description>Joomla! FTW.</description> <content:encoded><![CDATA[<p>Joomla! FTW.</p> ]]></content:encoded> </item> <item><title>By: Martin</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865380</link> <dc:creator>Martin</dc:creator> <pubDate>Tue, 11 Aug 2009 15:19:28 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865380</guid> <description>According to this code change post at the wordpress website you only need to apply it to the line between 188 and 192
http://core.trac.wordpress.org/changeset/11798</description> <content:encoded><![CDATA[<p>According to this code change post at the wordpress website you only need to apply it to the line between 188 and 192</p><p>http://core.trac.wordpress.org/changeset/11798</p> ]]></content:encoded> </item> <item><title>By: Gonzague</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865365</link> <dc:creator>Gonzague</dc:creator> <pubDate>Tue, 11 Aug 2009 14:56:06 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865365</guid> <description>thanks for that !
the line has to be replaced twice right?</description> <content:encoded><![CDATA[<p>thanks for that !</p><p>the line has to be replaced twice right?</p> ]]></content:encoded> </item> <item><title>By: ghacks Finds Wordpress Vulnerability &#124; The Minority Report</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865361</link> <dc:creator>ghacks Finds Wordpress Vulnerability &#124; The Minority Report</dc:creator> <pubDate>Tue, 11 Aug 2009 14:49:36 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865361</guid> <description>[...] It is advised to apply the temporary fix as soon as possible to Wordpress installations.Wordpress Remote Admin Password Reset Vulnerability [...]</description> <content:encoded><![CDATA[<p>[...] It is advised to apply the temporary fix as soon as possible to WordPress installations.Wordpress Remote Admin Password Reset Vulnerability [...]</p> ]]></content:encoded> </item> <item><title>By: Wordpress Remote Admin Password Reset Vulnerability &#124; Hack In The Box</title><link>http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/comment-page-1/#comment-865330</link> <dc:creator>Wordpress Remote Admin Password Reset Vulnerability &#124; Hack In The Box</dc:creator> <pubDate>Tue, 11 Aug 2009 13:39:44 +0000</pubDate> <guid
isPermaLink="false">http://www.ghacks.net/?p=15258#comment-865330</guid> <description>[...] the original post: Wordpress Remote Admin Password Reset Vulnerability   Share and [...]</description> <content:encoded><![CDATA[<p>[...] the original post: WordPress Remote Admin Password Reset Vulnerability   Share and [...]</p> ]]></content:encoded> </item> </channel> </rss>
