<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>JaypeeOnline &#187; permalinks migration</title> <atom:link href="http://jaypeeonline.net/tag/permalinks-migration/feed/" rel="self" type="application/rss+xml" /><link>http://jaypeeonline.net</link> <description>Technology, Blogging News, WordPress Theme and Plugin Reviews, Tips and Tricks</description> <lastBuildDate>Mon, 21 May 2012 03:17:06 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=</generator> <item><title>Permalinks Migration Plugin Vulnerability</title><link>http://jaypeeonline.net/wordpress-plugins/permalinks-migration-plugin-vulnerability/</link> <comments>http://jaypeeonline.net/wordpress-plugins/permalinks-migration-plugin-vulnerability/#comments</comments> <pubDate>Sat, 26 Jan 2008 00:31:31 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[WordPress]]></category> <category><![CDATA[WordPress Plugins]]></category> <category><![CDATA[cross site request forgery]]></category> <category><![CDATA[dean's permalink migration plugin]]></category> <category><![CDATA[permalinks migration]]></category> <category><![CDATA[xsrf]]></category><guid
isPermaLink="false">http://jaypeeonline.net/wordpress-plugins/permalinks-migration-plugin-vulnerability/</guid> <description><![CDATA[Over at <a
href="http://weblogtoolscollection.com/">Weblog Tools Collection</a>, an article was posted earlier today regarding a vulnerability in version 1.0 of the <a
href="http://weblogtoolscollection.com/archives/2008/01/25/permalinks-migration-vulnerability/">Deans Permalinks Migration Plugin</a>. The said vulnerability involves <a
href="http://en.wikipedia.org/wiki/Cross-site_request_forgery">XSRF</a> or Cross-site request forgery and allow the attacker  to steal valid credentials from the database.The person who found out about this vulnerability and goes by the name g30rg3_x has an explanation for this vulnerability:<blockquote>Since the variable $dean_pm_config[’oldstructure’] its not correctly sanitized (when retrieving), this allow any user to store/save “malicious code” inside the database and later be injected this “malicious code” when the data is retrieved. Using the XSRF as a “combo” we can create crafted pages that will force users to conduct this injection and steal some valid credentials to the WordPress based CMS.</blockquote><br/>]]></description> <content:encoded><![CDATA[<p><strong>EDIT</strong>: Thank you <a
href="http://houseonahill.net/">Connie</a> for bringing up the issue about the PacketStorm advisory regarding this issue. I&#8217;ve added a link to that advisory at the bottom of this post.</p><p>Over at <a
href="http://weblogtoolscollection.com/">Weblog Tools Collection</a>, an article was posted earlier today regarding a vulnerability in version 1.0 of the <a
href="http://weblogtoolscollection.com/archives/2008/01/25/permalinks-migration-vulnerability/">Deans Permalinks Migration Plugin</a>. The said vulnerability involves <a
href="http://en.wikipedia.org/wiki/Cross-site_request_forgery">XSRF</a> or Cross-site request forgery and allow the attacker  to steal valid credentials.</p><p>The person who found out about this vulnerability and goes by the name g30rg3_x has an explanation for this vulnerability:</p><blockquote><p>Since the variable $dean_pm_config[’oldstructure’] its not correctly sanitized (when retrieving), this allow any user to store/save “malicious code” inside the database and later be injected this “malicious code” when the data is retrieved. Using the XSRF as a “combo” we can create crafted pages that will force users to conduct this injection and steal some valid credentials to the WordPress based CMS.</p></blockquote><p>As a normal procedure or etiquette for developers and programmers, g30rg3_x contacted the plugin author first to notify him about the vulnerability. But after several failed attempts, he took it upon himself to create and provide a fix for this plugin vulnerability.</p><p>If you&#8217;re currently using the <a
href="http://www.deanlee.cn/wordpress/permalinks-migration-plugin/">Dean&#8217;s Permalink Migration Plugin version 1.0</a>, it is strongly advised that you deactivate it and/or download/install the modified version to keep your blog secure. You can download the special sub-version <strong>1.1-gx</strong> <a
href="http://g30rg3x.com/wp-files/dpm_11gx.zip">here</a>.</p><p>If you want to read the PacketStorm advisory regarding the Dean&#8217;s Permalinks Migration Plugin vulnerability, click <a
href="http://packetstorm.linuxsecurity.com/0801-advisories/sa28593.txt">here</a>. You can find this at <a
href="http://packetstorm.linuxsecurity.com/0801-advisories/index20.html">page 20</a> of PacketStorm&#8217;s January advisory archives.</p><p>Hopefully no one gets victimized by this vulnerability. Have a fun and safe weekend everyone!</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/blog/worpresscom-stats-plugin-vulnerability/" rel="bookmark" class="crp_title">Worpress.com Stats Plugin Vulnerability</a></li><li><a
href="http://jaypeeonline.net/wordpress-plugins/deans-fckeditor-with-pwwangs-code-for-wordpress-security-vulnerability/" rel="bookmark" class="crp_title">Deans FCKEditor with PWWANGS Code for WordPress(version 1.0.0) Security Vulnerability</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-233/" rel="bookmark" class="crp_title">WordPress 2.3.3</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/timthumb-zero-day-vulnerability/" rel="bookmark" class="crp_title">WARNING: Zero Day Vulnerability Found on Timthumb.php</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-4-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.4 Security Release</a></li><li><a
href="http://jaypeeonline.net/seo/seo-friendly-domain-migration-infographic/" rel="bookmark" class="crp_title">HowTo: Achieve an SEO-Friendly Domain Migration [Infographic]</a></li><li><a
href="http://jaypeeonline.net/wordpress/test/" rel="bookmark" class="crp_title">WordPress Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpreszorg-fake-wordpress-site/" rel="bookmark" class="crp_title">WordPresz.org &#8211; Fake WordPress Site</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/" rel="bookmark" class="crp_title">WordPress 3.1.2 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress-themes/vistered-little-theme-security-alert/" rel="bookmark" class="crp_title">Vistered Little Theme Security Alert</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/wordpress-plugins/permalinks-migration-plugin-vulnerability/feed/</wfw:commentRss> <slash:comments>9</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (enhanced) (User agent is rejected)
Database Caching 3/25 queries in 0.058 seconds using disk
Object Caching 431/470 objects using disk
Content Delivery Network via maxcdn.jaypeeonline.net

Served from: jaypeeonline.net @ 2012-05-27 01:44:33 -->
