<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: More 0day wordpress security leaks in firestats!</title>
	<atom:link href="http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/feed" rel="self" type="application/rss+xml" />
	<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html</link>
	<description>Go beyond the impossible!</description>
	<lastBuildDate>Sat, 28 Jan 2012 13:07:34 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: eat thai</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-1704</link>
		<dc:creator>eat thai</dc:creator>
		<pubDate>Mon, 04 Oct 2010 15:27:52 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-1704</guid>
		<description>Please. can you PM me and tell me company of much more thinks hither this. I am truly fan of inseparable&#039; s webpage...gets solved properly asap.</description>
		<content:encoded><![CDATA[<p>Please. can you PM me and tell me company of much more thinks hither this. I am truly fan of inseparable' s webpage...gets solved properly asap.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tava tea</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-1324</link>
		<dc:creator>tava tea</dc:creator>
		<pubDate>Wed, 25 Aug 2010 07:45:45 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-1324</guid>
		<description>I love what you men are usually up too. This kind of clever work and reporting! Keep up the great functions guys I&#039; ve added you men to my blogroll, Cheers.</description>
		<content:encoded><![CDATA[<p>I love what you men are usually up too. This kind of clever work and reporting! Keep up the great functions guys I' ve added you men to my blogroll, Cheers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jelmer de Hen</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-1026</link>
		<dc:creator>Jelmer de Hen</dc:creator>
		<pubDate>Sat, 17 Jul 2010 16:08:54 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-1026</guid>
		<description>Yea you may quote our blog, my personal twitter is http://twitter.com/JelmerDeHen and for the entire blog where you automatically get updates as we update the site is http://twitter.com/HackAck. Feel free to follow us :).</description>
		<content:encoded><![CDATA[<p>Yea you may quote our blog, my personal twitter is <a href="http://twitter.com/JelmerDeHen" rel="nofollow">http://twitter.com/JelmerDeHen</a> and for the entire blog where you automatically get updates as we update the site is <a href="http://twitter.com/HackAck" rel="nofollow">http://twitter.com/HackAck</a>. Feel free to follow us <img src='http://h.ackack.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> .</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: cryptsol</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-1017</link>
		<dc:creator>cryptsol</dc:creator>
		<pubDate>Fri, 16 Jul 2010 11:18:54 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-1017</guid>
		<description>it was very interesting to read.
I want to quote your post in my blog. It can?
And you et an account on Twitter?</description>
		<content:encoded><![CDATA[<p>it was very interesting to read.<br />
I want to quote your post in my blog. It can?<br />
And you et an account on Twitter?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Omry Yadan</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-994</link>
		<dc:creator>Omry Yadan</dc:creator>
		<pubDate>Mon, 12 Jul 2010 20:14:14 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-994</guid>
		<description>I am sure you can figure it out, if not - look at the comment in the new version of the file ;)</description>
		<content:encoded><![CDATA[<p>I am sure you can figure it out, if not - look at the comment in the new version of the file <img src='http://h.ackack.net/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jelmer de Hen</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-973</link>
		<dc:creator>Jelmer de Hen</dc:creator>
		<pubDate>Sat, 10 Jul 2010 18:49:38 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-973</guid>
		<description>You are right; I looked at the code but I could not find anything worthy.
Why would you have this function in Firestats, it&#039;s pretty pointless I think.</description>
		<content:encoded><![CDATA[<p>You are right; I looked at the code but I could not find anything worthy.<br />
Why would you have this function in Firestats, it's pretty pointless I think.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Omry Yadan</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-969</link>
		<dc:creator>Omry Yadan</dc:creator>
		<pubDate>Sat, 10 Jul 2010 15:41:15 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-969</guid>
		<description>The most significant thing is of course the configuration file download, however it&#039;s totally false.

see if you can get my config file from here:

http://admin.firestats.cc/firestats/php/tools/get_config.php

this php script is designed to generate a config file on demand, not to give the current one.
for instance, here is the config file of Bill Gates:
http://admin.firestats.cc/firestats/php/tools/get_config.php?user=Bill%20Gates&amp;pass=secret!</description>
		<content:encoded><![CDATA[<p>The most significant thing is of course the configuration file download, however it's totally false.</p>
<p>see if you can get my config file from here:</p>
<p><a href="http://admin.firestats.cc/firestats/php/tools/get_config.php" rel="nofollow">http://admin.firestats.cc/firestats/php/tools/get_config.php</a></p>
<p>this php script is designed to generate a config file on demand, not to give the current one.<br />
for instance, here is the config file of Bill Gates:<br />
<a href="http://admin.firestats.cc/firestats/php/tools/get_config.php?user=Bill%20Gates&#038;pass=secret" rel="nofollow">http://admin.firestats.cc/firestats/php/tools/get_config.php?user=Bill%20Gates&#038;pass=secret</a>!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sid3^effects</title>
		<link>http://h.ackack.net/more-0day-wordpress-security-leaks-in-firestats.html/comment-page-1#comment-966</link>
		<dc:creator>Sid3^effects</dc:creator>
		<pubDate>Sat, 10 Jul 2010 03:03:15 +0000</pubDate>
		<guid isPermaLink="false">http://h.ackack.net/?p=658#comment-966</guid>
		<description>nice find ..hope they fix it soon :)</description>
		<content:encoded><![CDATA[<p>nice find ..hope they fix it soon <img src='http://h.ackack.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>

