LWN.net Logo

Wordpress Cookie Authentication Vulnerability

Wordpress Cookie Authentication Vulnerability

Posted Nov 20, 2007 14:49 UTC (Tue) by Los__D (subscriber, #15263)
In reply to: Wordpress Cookie Authentication Vulnerability by drag
Parent article: Wordpress Cookie Authentication Vulnerability

This was in response to making the salt a configured value.

Of course, when nobody really needs to care about testing the sums, they could have stored the
passwords bit flipped, and have Wordpress no more unsafe than it is now...


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.