Please update MyGallery Plugin
Thanks for visiting! If you're new here, you may want to subscribe to our RSS feed. This blog posts regular Wordpress news, updates of themes, plugins, ideas, hacks, quick fixes and everything about blogging, especially about Wordpress. Go ahead, subscribe to our feed! You can also receive updates from this blog via email.
MyGallery Plugin for Wordpress If you are using the myGallery plugin for Wordpress to display your pictures, please follow the link above and update your plugin to the latest version. A pretty serious remote code execution vulnerability in the plugin has been found and disclosed and there have been scattered reports of hack attempts.


(12 votes, average: 4.67 out of 5)











Comments RSS
may gallery
[Reply] my fotos (1 comments.) — 05/1/2007 @ 1:09 amI’d recommend people subscribe to the Milw0rm rss of latest exploits, even if people aren’t interested in hackin/security stuff, It’s a good way of getting a heads up on what the script kiddies are going to target next. The my gallery exploit was posed a couple of days ago.
[Reply] Nick (2 comments.) — 05/1/2007 @ 5:21 amThanks for the tip!
Nice since I didn’t get anything from the plugin author although I am subscribed to the comments on his main plugin description…
[Reply] ttancm (34 comments.) — 05/1/2007 @ 7:31 amBTW, any details on this vulnerability? Anything in particular we should look for to make sure our sites weren’t compromised?
(I don’t need details on how to carry out the exploit, just what type of behavior the vulnerability allows)
[Reply] ttancm (34 comments.) — 05/1/2007 @ 7:39 amThanks for this heads up! One of my sites, radiozoom.net, went down after a mygallery problem showed up. Couldn’t even get into the front page. I removed the plugin physcally in case this was the problem, and apparently it was. Will update ASAP.
[Reply] John Bollwitt (1 comments.) — 05/1/2007 @ 12:24 pm[...] http://weblogtoolscollection.c.....ry-plugin/ [...]
BIG security issue ! at alex.rabe — 05/1/2007 @ 2:24 pmPlease update also wordTube,wp-table and myFlash. I have a similar problem in this plugins. All versions at wordpress.org and on my homepage are now safe… Sorry for the problems.
[Reply] Alex Rabe (1 comments.) — 05/1/2007 @ 5:29 pmMark,
[Reply] ttancm (34 comments.) — 05/1/2007 @ 8:47 pmDefinitely understandable, sort of mute anyway since as far as I can tell the exploit lets them do pretty much anything they want.
mute = moot =P
[Reply] ttancm (34 comments.) — 05/1/2007 @ 9:18 pm[...] äußert sich unter dazu und verweist gleich noch auf einen schon ein paar alte Tage alten Hack von myGallery. Der Exploit befindet sich ebenfalls auf milw0rm ( http://www.milw0rm.com/exploits/3814 ). Allen [...]
Wordpress-Exploits | NERD an der COSTA BLANCA — 05/2/2007 @ 1:11 am[...] the MyGallery WordPress Plugin: Weblog Tools Collection warns that if you are using the MyGallery Plugin for Wordpress, update it immediately. A vulnerability [...]
WordPress Wednesday News: Almost 1 Million WordPress.com Blogs, Over 4 Million Themes Downloaded, and You Want More News? at The Blog Herald — 05/2/2007 @ 6:18 pm[...] die Fehler, die für die Angriffe gesorgt haben: Programmierfehler in den Plugins Wordtube und myGallery. Wer diese verwendet, sollte schleunigst auf die aktuellste Version [...]
xTown.net » Hackergeschmeiss » Von CRen » Schadensbegrenzung, Schuldige gefunden, NACHTRAG, Und, Bilder, Sackgesichter, Schuldige, Hacker, Blog-System, Gelegenheit, Ordner, Berechtigungen, Angriffe, myGallery — 06/28/2007 @ 4:47 pm