05
Feb
2008
Posted by David Peralty as WordPress News
So, another security upgrade is out for WordPress. This one is fairly urgent, as it allows other members of your blog to “hijack” posts not written by them.
From the WordPress development blog:
WordPress 2.3.3 is an urgent security release. A flaw was found in our XML-RPC implementation such that a specially crafted request would allow any valid user to edit posts of any other user on that blog. In addition to fixing this security flaw, 2.3.3 fixes a few minor bugs. If you are interested only in the security fix, download the fixed version of xmlrpc.php and copy it over your existing xmlrpc.php.
Please upgrade to the latest version of WordPress, back up your blog, and as the post also mentions, change your passwords regularly. From what I can tell, there shouldn’t be any adverse effects from this update, so get to it.
Do you like this article? Submit it to Blogosphere News!
3 Responses
// to be different than the Tellerrand » Blog Archive » Wordpress 2.3.3 Sicherheitsupdate
February 5th, 2008 at 11:59 am
1[...] und wird alsbald direkt von einem dicken Wordpress-Update angebrüllt. Es handelt sich um ein dringendes (BloggingPro) Sicherheitsupdate. (Urgent, so [...]
wordpress
February 5th, 2008 at 3:34 pm
2WordPress 2.3.3 Released: Urgent Security Upgrade
Bookmarked your post over at Blog Bookmarker.com!
son ilanlar
February 6th, 2008 at 10:39 am
3Sicherheitsupdate
RSS feed for comments on this post · TrackBack URI
Leave a reply