[SECURITY]■ STORY TIMELINE
WORDPRESS CLICK2SHELL FLAW ALLOWS PHP EXECUTION
A cross-site request forgery (CSRF) vulnerability in WordPress Core, dubbed 'Click2Shell,' enables attackers to execute PHP code on vulnerable servers. Technical details and working exploits are now public.
Bleeping Computer+0m
Technical details and a proof-of-concept exploit have been published for a new WordPress cross-site request forgery (CSR…