One of The Most Powerful Research Tools Ever Created.. Keyword Elite

logo  

A discussion of earning with Affiliate Programs, SEO, Wordpress Blogging and General Motivational Ideas for Internet Publishers


  Blue RSS


Blog Icon Urgent Security Release - WordPress 2.3.3

Posted in Wordpress by Dave on February 5th, 2008

Wordpress has issued an urgent security release of WordPress 2.3.3 in response to a bug that impacts blogs that have registration enabled. From the Wordpress site…

blockquote WordPress 2.3.3 is an urgent security release. If you have registration enabled a flaw was found in the XML-RPC implementation such that a specially crafted request would allow a user to edit posts of other users on that blog. In addition to fixing this security flaw, 2.3.3 fixes a few minor bugs. If you are interested only in the security fix, download the fixed version of xmlrpc.php and copy it over your existing xmlrpc.php. Otherwise, you can get the entire release here.

Also, there is a vulnerability in the WP-Forum plugin that is being actively exploited right now. If you are using this plugin, please remove it until an update is available from its author.

Since we are talking security, remember to use strong passwords and change them regularly. While you’re updating WP and your plugins, consider refreshing your passwords.

Make sure to update your install if you haven’t already done so.

del.icio.us:Urgent Security Release - WordPress 2.3.3 newsvine:Urgent Security Release - WordPress 2.3.3 furl:Urgent Security Release - WordPress 2.3.3 reddit:Urgent Security Release - WordPress 2.3.3 blogmarks:Urgent Security Release - WordPress 2.3.3 Y!:Urgent Security Release - WordPress 2.3.3 smarking:Urgent Security Release - WordPress 2.3.3 magnolia:Urgent Security Release - WordPress 2.3.3 segnalo:Urgent Security Release - WordPress 2.3.3 gifttagging:Urgent Security Release - WordPress 2.3.3


3 Responses to 'Urgent Security Release - WordPress 2.3.3'

Subscribe to comments with RSS

  1. Free iPod Touch on February 10th, 2008

    I run a few wordpress blogs luckily this is only a small fix and doesnt require any major changes, nor does it create any plugin issues.

    Good job wordpress for getting the fix out!

  2. Anniversary Gifts on February 29th, 2008

    I generally avoid upgrading to every single wp upgrade. But it seems to be must.

  3. Dave on March 1st, 2008

    If you’re a fairly proficient PHP programmer you can generally apply the security patches and upgrades manually.

    I’m currently working with several Wordpress installs, each with various degrees of modification and customization. WP is a very friendly “open source” project which makes “hacks” something almost all blogger/programmers experiment with and once you’ve “hacked” your software, an auto-upgrade could cause unwanted results.



Categories
Archives

Resdaz Media
AffiliateBestPrograms © 2007-08 Resdaz Media LLC.
All Rights Reserved
Other Resdaz Media Network Sites:
Add to Technorati Favorites

BRDTracker BlogsByCategory.com