<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: WordPress Template.php HTML Injection Vulnerability</title>
	<atom:link href="http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/</link>
	<description>Tech, Web, How to, Reviews, Tips, Downloads, and Make Money Online</description>
	<lastBuildDate>Sun, 21 Mar 2010 16:43:16 +0800</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: El blog de Vitrubio &#187; Actualización a la versión 2.0.6 de Wordpress</title>
		<link>http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/comment-page-1/#comment-232201</link>
		<dc:creator>El blog de Vitrubio &#187; Actualización a la versión 2.0.6 de Wordpress</dc:creator>
		<pubDate>Sat, 13 Jan 2007 19:15:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.liewcf.com/blog/?p=2724#comment-232201</guid>
		<description>[...] corrección de un importante fallo de seguridad (descrito en el el blog LiewCF*), y descubierto por David Kierznowski*, que hace más que aconsejable la actualización. [...]</description>
		<content:encoded><![CDATA[<p>[...] corrección de un importante fallo de seguridad (descrito en el el blog LiewCF*), y descubierto por David Kierznowski*, que hace más que aconsejable la actualización. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Azmeen</title>
		<link>http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/comment-page-1/#comment-229526</link>
		<dc:creator>Azmeen</dc:creator>
		<pubDate>Mon, 08 Jan 2007 10:03:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.liewcf.com/blog/?p=2724#comment-229526</guid>
		<description>WordPress 2.0.6 has been released which includes this fix.</description>
		<content:encoded><![CDATA[<p>WordPress 2.0.6 has been released which includes this fix.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: LcF</title>
		<link>http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/comment-page-1/#comment-229416</link>
		<dc:creator>LcF</dc:creator>
		<pubDate>Mon, 08 Jan 2007 03:18:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.liewcf.com/blog/?p=2724#comment-229416</guid>
		<description>@malique: you can download the patched file at http://trac.wordpress.org/changeset/4665 and replace your existing file on the server. Please make sure you have a backup first.</description>
		<content:encoded><![CDATA[<p>@malique: you can download the patched file at <a href="http://trac.wordpress.org/changeset/4665" rel="nofollow">http://trac.wordpress.org/changeset/4665</a> and replace your existing file on the server. Please make sure you have a backup first.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: malique</title>
		<link>http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/comment-page-1/#comment-227809</link>
		<dc:creator>malique</dc:creator>
		<pubDate>Fri, 05 Jan 2007 08:12:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.liewcf.com/blog/?p=2724#comment-227809</guid>
		<description>liew, how do i install this security patch?

thanks in advanced. :)</description>
		<content:encoded><![CDATA[<p>liew, how do i install this security patch?</p>
<p>thanks in advanced. <img src='http://www.liewcf.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: :: מיומניו של לקוח :: &#187; ארכיון &#187; בעיית אבטחה בוורדפרס (כל הגרסאות, כולל 2.0.5)</title>
		<link>http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/comment-page-1/#comment-227292</link>
		<dc:creator>:: מיומניו של לקוח :: &#187; ארכיון &#187; בעיית אבטחה בוורדפרס (כל הגרסאות, כולל 2.0.5)</dc:creator>
		<pubDate>Thu, 04 Jan 2007 08:14:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.liewcf.com/blog/?p=2724#comment-227292</guid>
		<description>[...] אתמול אלעד הפנה אותי לפוסט בנדון. [...]</description>
		<content:encoded><![CDATA[<p>[...] אתמול אלעד הפנה אותי לפוסט בנדון. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Latest Exploit In Wordpress &#124; Wordpress Tutorials And Blogging Tips</title>
		<link>http://www.liewcf.com/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/comment-page-1/#comment-227183</link>
		<dc:creator>Latest Exploit In Wordpress &#124; Wordpress Tutorials And Blogging Tips</dc:creator>
		<pubDate>Wed, 03 Jan 2007 23:15:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.liewcf.com/blog/?p=2724#comment-227183</guid>
		<description>[...] According to LiewCF, The National Vulnerability Database has reported this as severity 7.0 (high). [...]</description>
		<content:encoded><![CDATA[<p>[...] According to LiewCF, The National Vulnerability Database has reported this as severity 7.0 (high). [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>


<!-- W3 Total Cache: Db cache debug info:
Engine:             disk
Total queries:      30
Cached queries:     17
Total query time:   0.008
SQL info:
    # | Time (s) |    Caching (Reject reason)     |   Status   | Query
    1 |        0 |  disabled (query is rejected)  | Not cached | SELECT option_name, option_value FROM wp_options WHERE autoload = 'yes'
    2 |    0.001 |  disabled (query is rejected)  | Not cached | DELETE FROM `wp_adrotate_tracker` WHERE `timer` < 1269168889 AND `ipaddress` = '38.107.191.110'
    3 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'aiosp_post_title_format' LIMIT 1
    4 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'dean_pm_options' LIMIT 1
    5 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'pd-rating-pages' LIMIT 1
    6 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'pd-rating-posts-index' LIMIT 1
    7 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'akpc_widget_options' LIMIT 1
    8 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_feed_head_enable' LIMIT 1
    9 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_feed_email_enabled' LIMIT 1
   10 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_feed_subscribe_widget_enabled' LIMIT 1
   11 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_enable_categorydesc_editor' LIMIT 1
   12 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_disable_autoformatting' LIMIT 1
   13 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_enable_excerpt_editor' LIMIT 1
   14 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_enable_fckeditor' LIMIT 1
   15 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_enable_sh' LIMIT 1
   16 |        0 |            enabled             |   Cached   | SELECT *
			FROM wp_ak_popularity_options
   17 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'polldaddy_use_ssl' LIMIT 1
   18 |    0.001 |            enabled             | Not cached | SELECT wp_redirection_items.*,wp_redirection_groups.tracking,wp_redirection_modules.id AS module_id FROM wp_redirection_items INNER JOIN wp_redirection_groups ON wp_redirection_groups.id=wp_redirection_items.group_id AND wp_redirection_groups.status='enabled' INNER JOIN wp_redirection_modules ON wp_redirection_modules.id=wp_redirection_groups.module_id AND wp_redirection_modules.type='wp' WHERE (wp_redirection_items.regex=1 OR wp_redirection_items.url='/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/feed/' OR wp_redirection_items.url='/archives/2007/01/wordpress-templatephp-html-injection-vulnerability/feed/') ORDER BY wp_redirection_groups.position,wp_redirection_items.position
   19 |        0 |            enabled             |   Cached   | SELECT comment_date_gmt FROM wp_comments WHERE comment_approved = '1' ORDER BY comment_date_gmt DESC LIMIT 1
   20 |        0 |            enabled             | Not cached | SELECT   wp_posts.* FROM wp_posts  WHERE 1=1  AND YEAR(wp_posts.post_date)='2007' AND MONTH(wp_posts.post_date)='1' AND wp_posts.post_name = 'wordpress-templatephp-html-injection-vulnerability' AND wp_posts.post_type = 'post'  ORDER BY wp_posts.post_date DESC
   21 |    0.001 |            enabled             | Not cached | SELECT wp_comments.* FROM wp_comments  WHERE comment_post_ID = '2724' AND comment_approved = '1'  ORDER BY comment_date_gmt DESC LIMIT 20
   22 |        0 |            enabled             | Not cached | SELECT t.*, tt.*, tr.object_id FROM wp_terms AS t INNER JOIN wp_term_taxonomy AS tt ON tt.term_id = t.term_id INNER JOIN wp_term_relationships AS tr ON tr.term_taxonomy_id = tt.term_taxonomy_id WHERE tt.taxonomy IN ('category', 'post_tag') AND tr.object_id IN (2724) ORDER BY t.name ASC
   23 |        0 |            enabled             | Not cached | SELECT post_id, meta_key, meta_value FROM wp_postmeta WHERE post_id IN (2724)
   24 |        0 |            enabled             |   Cached   | SELECT option_value FROM wp_options WHERE option_name = 'smart_feed_feedburner_enabled' LIMIT 1
   25 |    0.001 |            enabled             | Not cached | SELECT COUNT(comment_ID) FROM wp_comments WHERE comment_post_ID = 2724 AND comment_parent = 0 AND comment_approved = '1' AND comment_date_gmt < '2007-01-13 19:15:39'
   26 |    0.001 |            enabled             | Not cached | SELECT COUNT(comment_ID) FROM wp_comments WHERE comment_post_ID = 2724 AND comment_parent = 0 AND comment_approved = '1' AND comment_date_gmt < '2007-01-08 10:03:45'
   27 |        0 |            enabled             | Not cached | SELECT COUNT(comment_ID) FROM wp_comments WHERE comment_post_ID = 2724 AND comment_parent = 0 AND comment_approved = '1' AND comment_date_gmt < '2007-01-08 03:18:06'
   28 |        0 |            enabled             | Not cached | SELECT COUNT(comment_ID) FROM wp_comments WHERE comment_post_ID = 2724 AND comment_parent = 0 AND comment_approved = '1' AND comment_date_gmt < '2007-01-05 08:12:24'
   29 |        0 |            enabled             | Not cached | SELECT COUNT(comment_ID) FROM wp_comments WHERE comment_post_ID = 2724 AND comment_parent = 0 AND comment_approved = '1' AND comment_date_gmt < '2007-01-04 08:14:37'
   30 |        0 |            enabled             | Not cached | SELECT COUNT(comment_ID) FROM wp_comments WHERE comment_post_ID = 2724 AND comment_parent = 0 AND comment_approved = '1' AND comment_date_gmt < '2007-01-03 23:15:22'
-->

<!-- W3 Total Cache: Page cache debug info:
Engine:             disk (enhanced)
Key:                archives/2007/01/wordpress-templatephp-html-injection-vulnerability/feed/_default_.html
Caching:            disabled
Reject reason:      user agent is rejected
Status:             not cached
Creation Time:      0.070s
Header info:
X-Powered-By:       W3 Total Cache/0.8.5.2
X-Pingback:         http://www.liewcf.com/blog/xmlrpc.php
Last-Modified:      Sun, 21 Mar 2010 16:43:16 GMT
ETag:               "7e6b2e25a07549e1854ed0a0b34e7248"
Set-Cookie:         wpgb_visit_last_php-default=1269226489; expires=Tue, 22-Mar-2011 02:54:49 GMT; path=/
Link:               <http://wp.me/p4tKT-HW>; rel=shortlink
Content-Type:       text/xml; charset=utf-8
-->