1and1 Website Application Scan

edited April 2017 in Theme support
hi there. this weekend we got mail from our hosting partner:

Using the GET HTTP method, 1and1 SiteLock found that :

The following resources may be vulnerable to blind SQL injection 

The 'load%5B%5D' parameter of the /wp-admin/load-styles.php CGI 

/wp-admin/load-styles.php?c=0&ver=4.7.3&dir=ltr&load%5B%5D=dashicons%2cb

uttons%2cforms%2cl10n%2cloginzz0&ver=4.7.3&dir=ltr&load%5B%5D=dashicons%

2cbuttons%2cforms%2cl10n%2cloginyy


its an issue with theme files or the main wordpress files?


thanks for info.

wistlaumann


p.p1 {margin: 0.0px 0.0px 0.0px 0.0px; font: 13.0px Times; color: #646e80; -webkit-text-stroke: #646e80}
span.s1 {font-kerning: none}

Comments

Sign In or Register to comment.
This website uses cookies

We use cookies to personalise content and ads, to provide social media features and to analyse our traffic. We also share information about your use of our site with our social media, advertising and analytics partners who may combine it with other information that you’ve provided to them or that they’ve collected from your use of their services.

Cookies are small text files that can be used by websites to make a user's experience more efficient.

The law states that we can store cookies on your device if they are strictly necessary for the operation of this site. For all other types of cookies we need your permission. This means that cookies which are categorized as necessary, are processed based on GDPR Art. 6 (1) (f). All other cookies, meaning those from the categories preferences and marketing, are processed based on GDPR Art. 6 (1) (a) GDPR.

This site uses different types of cookies. Some cookies are placed by third party services that appear on our pages.

You can at any time change or withdraw your consent from the Cookie Declaration on our website.

Learn more about who we are, how you can contact us and how we process personal data in our Privacy Policy.

Please state your consent ID and date when you contact us regarding your consent.