Forums

Possible WP Security issue regarding Comments? (4 posts)

  1. rpesq
    Member
    Posted 4 years ago #

    Hi,
    Latest WP 2.3.2, only additional plugin added was BackUpWordpress (latest version 0.4.5)

    Background:
    (1) I have comments disabled
    (2) Users must be registered and logged in to comment ENABLED, anyone can register is DISABLED
    (3) Only 1 user (me)
    (4) Not only are comments disabled, but I have massively edited my template, and all the code and links to add Comments has been removed. So, there is actually ~no way~ to even click on a "Comment" link for ANY of my posts. The code is simply not there.

    Situation:
    Overnight a person was able to put a Spam comment, but the comment was 'held in moderation'. It was not posted publicly, but I CANNOT SEE HOW the person was able to do this unless there is an unreported security issue.

    If anyone can explain HOW this could happen WITHOUT there being a security issue, I would appreciate knowing, and also how to prevent this in the future.

    If you need any more info, let me know.

  2. whooami
    Member
    Posted 4 years ago #

    sounds like a trackback or a pingback.

  3. rpesq
    Member
    Posted 4 years ago #

    You might be right. Can you briefly explain how trackback or a pingback works?

  4. Chris_K
    Member
    Posted 4 years ago #

    Both are defined at Introduction_to_Blogging in the codex.

Topic Closed

This topic has been closed to new replies.

About this Topic

Tags

No tags yet.