Browse by Tag
ajax blog blog archive categories code css database database security development exploit flat google guitar hosting html injection internet javascript Links linux menu mysql mysql login MySQL Security mysql shell new news oracle password php php mysql security programming really simple syndication registerwidget search security seo server software sql sql injection technology update utf vulnerability web widgetinfo widgetmanager wordpress xmlProtecting WordPress from SQL Injection Attacks
Filed under post-a-comment, development, real, pressed-words, middot, sql, php, database, security, escape, blog, wordpress, mysql
What he means is that in general WordPress does not sanitize MySQL queries. He recommends that WordPress provide “a proper set of SQL safe functions (ie $wpdb->escape_int and $wpdb->escape_str” and “use mysql_real_escape_string(), …
escalation http local php privilege tools vulnerabilities x org x serverescalation, http, local, php, privilege, tools, vulnerabilities, x org x server
Read the original:
Protecting WordPress from SQL Injection Attacks
January 23rd, 2008. Comment now »
RSS Full




