Ceres
New Member
I know, I've written many posts reminding you to update your WordPress blogs. So here's the latest one...
WordPress › Blog » WordPress 2.8.4: Security Release
WordPress › Blog » WordPress 2.8.4: Security Release
Yesterday a vulnerability was discovered: a specially crafted URL could be requested that would allow an attacker to bypass a security check to verify a user requested a password reset. As a result, the first account without a key in the database (usually the admin account) would have its password reset and a new password would be emailed to the account owner. This doesn’t allow remote access, but it is very annoying.
Last edited by a moderator: