Title: security
Last modified: August 19, 2016

---

# security

 *  [rstritmatter](https://wordpress.org/support/users/rstritmatter/)
 * (@rstritmatter)
 * [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/)
 * I was alarmed to see a hacker post the following active link to a listserve.
 * [http://shake-speares-bible.com/wp-admin/post.php?post=2086&action=edit](http://shake-speares-bible.com/wp-admin/post.php?post=2086&action=edit)
 * Does that mean that every edited version of every post is accessible to hacker?
   Or just the final version as last published?
 * What are the implications. Does this hacker have access to my administrative 
   panel?
 * And what can be done to close up this security loophole? I’m not sure this is
   the best forum for the question, but since I figure you really brainy types hang
   out here, I’d give it a shot. Currently reading the codex on security issues,
   but thought it might be worth posting a specific query here. Thanks.

Viewing 6 replies - 1 through 6 (of 6 total)

 *  [Roy](https://wordpress.org/support/users/gangleri/)
 * (@gangleri)
 * [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/#post-1968110)
 * The link redirects to the login screen, right? Has the post been edited? I can
   come up with that link for any of your posts (they all look the same, only the
   post ID changes), but that doesn’t mean that I can do anything with it. Or did
   I misunderstand you?
 *  Thread Starter [rstritmatter](https://wordpress.org/support/users/rstritmatter/)
 * (@rstritmatter)
 * [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/#post-1968112)
 * hmm…so it does redirect to the login screen, but in the version sent on the listserve
   by the hacker, it went directly to the editing screen. Why would that change?
 * Let me try once more:
 * <[http://shake-speares-bible.com/wp-admin/post.php?post=2086&action=edit&gt](http://shake-speares-bible.com/wp-admin/post.php?post=2086&action=edit&gt);
 * Let’s see where that goes.
 *  Thread Starter [rstritmatter](https://wordpress.org/support/users/rstritmatter/)
 * (@rstritmatter)
 * [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/#post-1968113)
 * Nope. Why would the link he sent behave differently in an email than on these
   boards?
 * Thanks to Roy or anyone who can shed light on this. Continuing to read more generally
   on security questions on codex and boards.
 * Cheers,
 * RS
 *  [Roy](https://wordpress.org/support/users/gangleri/)
 * (@gangleri)
 * [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/#post-1968114)
 * [Here](http://shake-speares-bible.com/wp-login.php?redirect_to=http%3A%2F%2Fshake-speares-bible.com%2Fwp-admin%2Fpost.php%3Fpost%3D2086%26action%3Dedit&reauth=1).
 * It would have been mighty strange if just knowing an url (which is extremely 
   easy) could get you into the admin. When not logged it, such a link can never
   take you to the edit screen. You were probably logged in when you tried.
 *  Thread Starter [rstritmatter](https://wordpress.org/support/users/rstritmatter/)
 * (@rstritmatter)
 * [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/#post-1968116)
 * Ok, I think I figured it out. Sorry. Is there an icon for dumb?
 * Someone can close this thread. I don’t see a link for me to do it.
 *  Thread Starter [rstritmatter](https://wordpress.org/support/users/rstritmatter/)
 * (@rstritmatter)
 * [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/#post-1968117)
 * Yup. You solved the mystery!

Viewing 6 replies - 1 through 6 (of 6 total)

The topic ‘security’ is closed to new replies.

## Tags

 * [admin-panel](https://wordpress.org/support/topic-tag/admin-panel/)
 * [hacks](https://wordpress.org/support/topic-tag/hacks/)

 * In: [Hacks](https://wordpress.org/support/forum/plugins-and-hacks/hacks/)
 * 6 replies
 * 2 participants
 * Last reply from: [rstritmatter](https://wordpress.org/support/users/rstritmatter/)
 * Last activity: [15 years, 3 months ago](https://wordpress.org/support/topic/security-7/#post-1968117)
 * Status: not resolved

## Topics

### Topics with no replies

### Non-support topics

### Resolved topics

### Unresolved topics

### All topics
