HTTP: WordPress PHP Speedy Plugin 'admin_container.php' Remote PHP Code Execution Vulnerability
This signature detects attempts to exploit a known vulnerability in Wordpress PHP Speedy Plugin. A successful attack can lead to an arbitrary code execution within the context of the Web server.
Extended Description
The PHP Speedy plugin for WordPress is prone to a vulnerability that lets remote attackers execute arbitrary code because the application fails to sanitize user-supplied input. Attackers can exploit this issue to execute arbitrary PHP code within the context of the affected webserver process. PHP Speedy 0.5.2 and prior are vulnerable; other versions may also be affected.
Affected Products
Aciddrop php_speedy_wordpress_plugin
References
BugTraq: 46743
URL: http://aciddrop.com/2008/03/07/php-speedy-wordpress-plugin-preview-release/ http://wordpress.org/
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Aciddrop