tmacuk

Found a Bug in Wordpress 2.9.1

by tmac on Feb.06, 2010, under Hacks

I found this after I published a post for the future.

I don’t know how much you guys know about Wordpress, the main thing I want you to know is that PlayStation and Ebay use it.

Imagine if you could find out something that PlayStation was going to release before they announced it? Lets take the example of Apple annoucing the Ipad. It would make alot of sense for them to write the article first and have it so that it publishes itself when they are giving the talk at whatever conference they did. What if you could see the title of this document before hand.

Using simple URL bruteforcing you can. There are a number of different options in Wordpress that you can use for your URL “Permalinks” I just use ?p=153 meaning I guess post=(number). You can however use variations of dates, numbers or create you own.

I have just created a post which isn’t going to be released until next year take a look at http://tmacuk.co.uk/?p=153 – Look at the top of your browser and you can see the title of the post that I have made :)

Imagine finding out about the PlayStation 4 :S

tmacuk


4 Comments for this entry

2 Trackbacks / Pingbacks for this entry

Leave a Reply

Looking for something?

Use the form below to search the site:

Still not finding what you're looking for? Drop a comment on a post or contact us so we can take care of it!