DJ-Pfulio via Ale
2018-08-20 15:09:50 UTC
"WordPress hasn't issued a patch and we have no information about
mitigation from the CMS vendor to go on either. During his presentation
Thomas said that the "issue is only exposed to authenticated users...
they are certainly not supposed to be able to execute [code]"."
https://www.theregister.co.uk/2018/08/20/php_unserialisation_wordpress_vuln/
Something seems to be up, but nobody has released a patch.
Be aware.
Be ready.
_______________________________________________
Ale mailing list
***@ale.org
https://mail.ale.org/mailman/listinfo/ale
See JOBS, ANNOUNCE and SCHOOLS lists at
http://mail.ale.org/mailman/listinfo
mitigation from the CMS vendor to go on either. During his presentation
Thomas said that the "issue is only exposed to authenticated users...
they are certainly not supposed to be able to execute [code]"."
https://www.theregister.co.uk/2018/08/20/php_unserialisation_wordpress_vuln/
Something seems to be up, but nobody has released a patch.
Be aware.
Be ready.
_______________________________________________
Ale mailing list
***@ale.org
https://mail.ale.org/mailman/listinfo/ale
See JOBS, ANNOUNCE and SCHOOLS lists at
http://mail.ale.org/mailman/listinfo