Make WordPress Core

Changes between Version 1 and Version 2 of Ticket #48049, comment 3


Ignore:
Timestamp:
09/16/2019 02:33:58 PM (5 years ago)
Author:
loranrendel
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #48049, comment 3

    v1 v2  
    44Not exactly.
    55My proposal will also protect from accessing files like wp-config.php~, wp-config.bak and some hooked functions.
     6
     7Another requested url:
     8
     9{{{
     10/wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php
     11}}}