Cedric’s Cruft

  • Blog
April 2015 (1)

WordPress up to version 4.1.2 Stored XSS vulnerability

WordPress 4.1.2 is available as of April 21, 2015. WordPress versions 4.1.1 and earlier are affected by a critical cross-site scripting vulnerability, which could enable anonymous users to compromise a site (WP blog). tldr; mysql → special characters → truncation → input validation → output sanitisation → xss → time to update WordPress. Introduction: MySQL […]

Read Post
April 23, 2015 Uncategorized
Recent Posts
  • Adding an external hard drive to the Unifi Cloud Key Gen2 Plus
  • Tracing API calls in Burp with Frida
  • SANS Holiday Hack Challenge 2015 writeup
  • SECCON 2015 – Reverse engineering Android APK 2 – 400 writeup
  • WordPress up to version 4.1.2 Stored XSS vulnerability
Recent Comments
    Archives
    • February 2022
    • January 2017
    • January 2016
    • December 2015
    • April 2015
    • June 2014
    • December 2013
    © 2013-2022 Cedric Van Bockhaven