In my blog post "Fun to Play: WordPress 3.0 Multisite SQL Injection Vulnerability Regression?" I'm announcing a competition to have some fun while doing something useful to the codebase: To find old exploits that got re-introduced with the MU-Merge in wordpress 3.0:
The WordPress 3.0 Vulnerability Regression Hunt
Everybody can take part and the older the original exploit is, the more points you can gain. In the end all points per gamer/team will be summarized and the results get published. As a starting example I added some hints to a possible re-introduced two and a half year old exploit. So get your hands dirty :D


LinkBack URL
About LinkBacks
Reply With Quote