<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Vulnerability in WP Super Cache v0.1</title>
	<atom:link href="http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/feed/" rel="self" type="application/rss+xml" />
	<link>http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/</link>
	<description>This can all be made better. Ready? Begin.</description>
	<pubDate>Mon, 01 Dec 2008 19:48:27 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.5</generator>
		<item>
		<title>By: DG</title>
		<link>http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-97260</link>
		<dc:creator>DG</dc:creator>
		<pubDate>Tue, 04 Dec 2007 13:20:17 +0000</pubDate>
		<guid isPermaLink="false">http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-97260</guid>
		<description>Chris,

I've noticed similiar activites on my site about 20 days back, and since then, I was busy checking all my template/plugin files, but couldn't find any unusual thing therein.

Yesterday, I was zeored on to WordPress Super Cache, as that was the only plugin left unchecked. Later on, further digging confirmed my doubt and also came across your post.

I've written to donnacha on his email as well in your WordPress support forum thread about the vulnerability still exisiting in the latest version.

DG...</description>
		<content:encoded><![CDATA[<p>Chris,</p>
<p>I&#8217;ve noticed similiar activites on my site about 20 days back, and since then, I was busy checking all my template/plugin files, but couldn&#8217;t find any unusual thing therein.</p>
<p>Yesterday, I was zeored on to WordPress Super Cache, as that was the only plugin left unchecked. Later on, further digging confirmed my doubt and also came across your post.</p>
<p>I&#8217;ve written to donnacha on his email as well in your WordPress support forum thread about the vulnerability still exisiting in the latest version.</p>
<p>DG&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DG</title>
		<link>http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-97251</link>
		<dc:creator>DG</dc:creator>
		<pubDate>Tue, 04 Dec 2007 00:39:27 +0000</pubDate>
		<guid isPermaLink="false">http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-97251</guid>
		<description>Hello Chris,

The vulnerability, you mentioned still exisits, even in the newest version 0.5.1.

I had seen similiar deeply nested folders in my root directory about 20 days ago. Since than, I'm checking all my template files and plugins, but couldn't find anything unusual.

Today, I checked WordPress Super Cache, as it was the only plugin that was unleft and found the cause behind the vulnerability.

After digging further, I came across your post, which confirmed the issue.

DG...
http://www.ditii.com/</description>
		<content:encoded><![CDATA[<p>Hello Chris,</p>
<p>The vulnerability, you mentioned still exisits, even in the newest version 0.5.1.</p>
<p>I had seen similiar deeply nested folders in my root directory about 20 days ago. Since than, I&#8217;m checking all my template files and plugins, but couldn&#8217;t find anything unusual.</p>
<p>Today, I checked WordPress Super Cache, as it was the only plugin that was unleft and found the cause behind the vulnerability.</p>
<p>After digging further, I came across your post, which confirmed the issue.</p>
<p>DG&#8230;<br />
<a href="http://www.ditii.com/" rel="nofollow">http://www.ditii.com/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WP Super Cache should be safe to use &#124; Tummblr</title>
		<link>http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96486</link>
		<dc:creator>WP Super Cache should be safe to use &#124; Tummblr</dc:creator>
		<pubDate>Mon, 12 Nov 2007 02:21:37 +0000</pubDate>
		<guid isPermaLink="false">http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96486</guid>
		<description>[...] directory but nothing more. That bug has been fixed. See Donncha&#8217;s official statement and Chris&#8217;s account of the bug and debugging process in more detail. Thanks, Donncha, for the speedy resolution of this [...]</description>
		<content:encoded><![CDATA[<p>[...] directory but nothing more. That bug has been fixed. See Donncha&#8217;s official statement and Chris&#8217;s account of the bug and debugging process in more detail. Thanks, Donncha, for the speedy resolution of this [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Greg Knaddison</title>
		<link>http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96470</link>
		<dc:creator>Greg Knaddison</dc:creator>
		<pubDate>Sat, 10 Nov 2007 13:07:14 +0000</pubDate>
		<guid isPermaLink="false">http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96470</guid>
		<description>There's a remotely exploitable security hole that allows the installation of a shellbot and the best Barry can say is "just a bug" and "misdirected attack on potentially vulnerably Drupal sites".  

Way to ignore and redirect what seems clearly like a real problem with a WordPress plugin that was targetted itself.

If you make a claim like "probably misdirected attack on Drupal" you should provide an in depth analysis that shows exactly why a script to exploit a Drupal vulnerability is in fact accidentally exploiting this wordpress vulnerability.</description>
		<content:encoded><![CDATA[<p>There&#8217;s a remotely exploitable security hole that allows the installation of a shellbot and the best Barry can say is &#8220;just a bug&#8221; and &#8220;misdirected attack on potentially vulnerably Drupal sites&#8221;.  </p>
<p>Way to ignore and redirect what seems clearly like a real problem with a WordPress plugin that was targetted itself.</p>
<p>If you make a claim like &#8220;probably misdirected attack on Drupal&#8221; you should provide an in depth analysis that shows exactly why a script to exploit a Drupal vulnerability is in fact accidentally exploiting this wordpress vulnerability.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Donncha&#8217;s Friday Links at Holy Shmoly!</title>
		<link>http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96465</link>
		<dc:creator>Donncha&#8217;s Friday Links at Holy Shmoly!</dc:creator>
		<pubDate>Fri, 09 Nov 2007 15:40:50 +0000</pubDate>
		<guid isPermaLink="false">http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96465</guid>
		<description>[...] is no vulnerability in WP Super Cache. Chris blogged about it after we spent a late night of debugging it until 1.30am. But [...]</description>
		<content:encoded><![CDATA[<p>[...] is no vulnerability in WP Super Cache. Chris blogged about it after we spent a late night of debugging it until 1.30am. But [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Christian Heilmann</title>
		<link>http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96461</link>
		<dc:creator>Christian Heilmann</dc:creator>
		<pubDate>Fri, 09 Nov 2007 07:50:53 +0000</pubDate>
		<guid isPermaLink="false">http://factoryjoe.com/blog/2007/11/08/vulnerability-in-wp-super-cache-v01/#comment-96461</guid>
		<description>I have to concur, Donncha has been very interested and helpful about this. I talked to the security experts at work about the attacks and they are very common these days. The best prevention is to turn off any passthru, exec or other shell extensions and disallow file loading from http.</description>
		<content:encoded><![CDATA[<p>I have to concur, Donncha has been very interested and helpful about this. I talked to the security experts at work about the attacks and they are very common these days. The best prevention is to turn off any passthru, exec or other shell extensions and disallow file loading from http.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
