Archive for category: Bugs and Exploits

  • WordPress 3.3.1 Multiple CSRF Vulnerabilities

    WordPress 3.3.1 Multiple CSRF Vulnerabilities

    Bugs and Exploits May 7, 2012 05:23 4 comments

      WordPress 3.3.1 suffers from multiple CSRF vulnerabilities which allow an attacker to change post title, add administrators/users, delete administrators/users, approve and unapprove comment, delete comment, change background image, insert custom header image, change site title, change administrator’s email, change WordPress Address, change Site Address, when an authenticated user/admin  browses [...]

     
  • Online forums hacked and misused

    Online forums hacked and misused

    Bugs and Exploits April 26, 2012 05:45 3 comments

    Online forums have, for some time, apparently been the target of hackers who inject additional code. However, the attackers aren’t interested in publishing cool slogans or political messages, they’re looking for money. They steal Google traffic from the forums and exploit this traffic via ads. Their main targets appear to [...]

     
  • Joomla! updates close information disclosure holes

    Joomla! updates close information disclosure holes

    Bugs and Exploits February 7, 2012 05:02 no comments

    Versions 1.7.5 and 2.5.1 of the open source Joomla! content management system (CMS) have been released to address two information disclosure vulnerabilities. These include one medium severity problem in Joomla! 1.7.x that could allow an unauthorised user to gain access to the error log stored on a victim’s server, and, [...]