[Secure-testing-team] [Secure-testing-commits] r12566 - data/CVE

Giuseppe Iuculano giuseppe at iuculano.it
Wed Aug 12 04:20:25 UTC 2009


Michael S. Gilbert ha scritto:

> although, the question is, what can the attacker do once they have
> access to a wordpress account?  

Note that attacker do not have access to a wordpress account, he can only send
the reset password in admin email.

Cheers,
Giuseppe



-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20090812/bcf872ea/attachment.pgp>


More information about the Secure-testing-team mailing list