XML-RPC Vulnerability and b2evolution

In: RANTING

5 Jul 2005

I think that I am protected from the PHP XML-RPC vulnerability discovered by Secunia. However, the team at b2evolution have made only a cursory attempt to explain what is happening.

I have updated the xmlrpc.php file on my serv to the latest CVS version and also updated the PHP XML-RPC library in PEAR.

Looking forward to a clearer posting on why b2evolution is NOT vulnerable to this type of attack.


Technorati: , , ,

Spread the Love:
  • Facebook
  • Twitter
  • Ping.fm
  • Digg
  • StumbleUpon
  • LinkedIn
  • Reddit
  • Slashdot
  • Netvouz
  • Identi.ca
  • Technorati
  • del.icio.us
  • email

Related Posts

  • And I'd also just like to ask this: Where's the link back to b2evolution.net?
  • is affected by this, and you should apply the fix provided by Francois immediately if you haven't done so already.
blog comments powered by Disqus

About this blog

Stephen Pierzchala is one of a 10-year veteran of the Web performance field who also writes on topics that interest his non-linear world-view.

Contact

stephen@pierzchala.com

+1 (508) 410-3865