Re: Sql Injection in wordpress 2.3.1

看板Bugtraq作者時間18年前 (2007/12/06 04:38), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串3/3 (看更多)
Wordpress 2.3.1 converts the 'p' parameter to an integer. query.php line 449: $qv['p'] = (int) $qv['p']; So there is no exploit possibility.
文章代碼(AID): #17Lmmv00 (Bugtraq)
文章代碼(AID): #17Lmmv00 (Bugtraq)