Title: [Plugin: WP Mobile Detector] close timthumb.php backdoor
Last modified: August 20, 2016

---

# [Plugin: WP Mobile Detector] close timthumb.php backdoor

 *  [petercasier](https://wordpress.org/support/users/petercasier/)
 * (@petercasier)
 * [14 years, 7 months ago](https://wordpress.org/support/topic/plugin-wp-mobile-detector-close-timthumbphp-backdoor/)
 * I can see the newest WP Mobile Detector plugin has the newest timthumb.php but
   I strongly suggest to change the line:
 * define (‘ALLOW_EXTERNAL’, TRUE);
 * to
 * define (‘ALLOW_EXTERNAL’, false);
 * so no external sites can upload malicious code.
 * Peter
 * [http://wordpress.org/extend/plugins/wp-mobile-detector/](http://wordpress.org/extend/plugins/wp-mobile-detector/)

Viewing 1 replies (of 1 total)

 *  Plugin Author [websitezcom](https://wordpress.org/support/users/websitezcom/)
 * (@websitezcom)
 * [14 years, 7 months ago](https://wordpress.org/support/topic/plugin-wp-mobile-detector-close-timthumbphp-backdoor/#post-2300859)
 * Unfortunately that would mean that any linked images from remote sites would 
   not work.
 * The latest version of the Timthumb.php script does proper validation to prevent
   malicious intent.

Viewing 1 replies (of 1 total)

The topic ‘[Plugin: WP Mobile Detector] close timthumb.php backdoor’ is closed to
new replies.

 * ![](https://s.w.org/plugins/geopattern-icon/wp-mobile-detector_899b74.svg)
 * [WP Mobile Detector](https://wordpress.org/plugins/wp-mobile-detector/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/wp-mobile-detector/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/wp-mobile-detector/)
 * [Active Topics](https://wordpress.org/support/plugin/wp-mobile-detector/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/wp-mobile-detector/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/wp-mobile-detector/reviews/)

 * 1 reply
 * 2 participants
 * Last reply from: [websitezcom](https://wordpress.org/support/users/websitezcom/)
 * Last activity: [14 years, 7 months ago](https://wordpress.org/support/topic/plugin-wp-mobile-detector-close-timthumbphp-backdoor/#post-2300859)
 * Status: not resolved