Bugtraq mailing list archives

Re: Word Press Sensitive Directory exposure (SQL)


From: none () none com
Date: 8 Mar 2007 18:48:10 -0000

" #File Name: admin-functions.php

//SQL EXAMPLE ERROR:

Fatal error: Call to undefined function __() in /usr/local/www/****/data/wp-admin/admin-functions.php on line 1593

Thanks,
r00t "

hi there 

don't you think you can post a simple full path disclosure on the wordpress bugtracker website ?

"//SQL EXAMPLE ERROR:"
http://site.com/wp-admin/admin-functions.php
/home/user/www/htdocs/wp-admin/admin-functions.php

there's nothing about sql here ...
it's only because there's no htaccess on the folder and you can access the file directly ... 


Current thread: