<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; wordpress vulnerabilites</title>
	<atom:link href="http://www.ghacks.net/tag/wordpress-vulnerabilites/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 23:31:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Scan your Wordpress blog for vulnerabilities</title>
		<link>http://www.ghacks.net/2007/07/09/scan-your-wordpress-blog-for-vulnerabilities/</link>
		<comments>http://www.ghacks.net/2007/07/09/scan-your-wordpress-blog-for-vulnerabilities/#comments</comments>
		<pubDate>Mon, 09 Jul 2007 07:33:31 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Online Services]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[wordpress security]]></category>
		<category><![CDATA[wordpress update]]></category>
		<category><![CDATA[wordpress vulnerabilites]]></category>
		<category><![CDATA[wp scanner]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/07/09/scan-your-wordpress-blog-for-vulnerabilities/</guid>
		<description><![CDATA[Site owners should always be aware of the possibility that their blog gets compromised. This can be because of an old version of Wordpress that is installed or because of vulnerabilities in plugins or themes. It is relatively time consuming to check for updates and stay up to date to make it unlikely that someone would be able to hack your blog.]]></description>
			<content:encoded><![CDATA[<p>Site owners should always be aware of the possibility that their blog gets compromised. This can be because of an old version of Wordpress that is installed or because of vulnerabilities in plugins or themes. It is relatively time consuming to check for updates and stay up to date to make it unlikely that someone would be able to hack your blog.</p>
<p>The online security script Wordpress Scanner is a great tool which can be used to scan your Wordpress blog for several vulnerabilities such as outdated versions of Wordpress or single files and XSS vulnerabilities in themes. All you need to do is add the line <code><!-- wpscanner --></code> in the header of your blog so that the <a href="http://blogsecurity.net/wpscan" target="_blank">Wordpress Scanner</a> cgi script can access the information and knows that you are indeed the owner of the blog.</p>
<p>This tool is not perfect but it analyzes the versions of your Wordpress files which is probably the dominant attack vector when it comes to Wordpress hacking and basic XSS vulnerabilities in the themes. The tool gives advice if vulnerabilities have been found on how to fix them.</p>
<p><span id="more-1753"></span>Just make sure you run the script, follow the guidelines and remove the wpscanner entry from your header again. You would not want someone else to be able to check your blog for vulnerabilities, would not you ? This is a great little script which should become even better when the author adds checks for plugins.</p>

	Tags: <a href="http://www.ghacks.net/tag/wordpress-security/" title="wordpress security" rel="tag">wordpress security</a>, <a href="http://www.ghacks.net/tag/wordpress-update/" title="wordpress update" rel="tag">wordpress update</a>, <a href="http://www.ghacks.net/tag/wordpress-vulnerabilites/" title="wordpress vulnerabilites" rel="tag">wordpress vulnerabilites</a>, <a href="http://www.ghacks.net/tag/wp-scanner/" title="wp scanner" rel="tag">wp scanner</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/11/13/wordpress-2-8-6-security-update/" title="Wordpress 2.8.6 Security Update (November 13, 2009)">Wordpress 2.8.6 Security Update</a> (5)</li>
	<li><a href="http://www.ghacks.net/2009/10/21/wordpress-2-8-5-security-update/" title="Wordpress 2.8.5 Security Update (October 21, 2009)">Wordpress 2.8.5 Security Update</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/07/20/wordpress-2-8-2-security-patch/" title="Wordpress 2.8.2 Security Patch (July 20, 2009)">Wordpress 2.8.2 Security Patch</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/11/25/wordpress-265-security-update/" title="Wordpress 2.6.5 Security Update (November 25, 2008)">Wordpress 2.6.5 Security Update</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/08/15/wordpress-261-released/" title="Wordpress 2.6.1 released (August 15, 2008)">Wordpress 2.6.1 released</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/07/09/scan-your-wordpress-blog-for-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
	</channel>
</rss>
