This website uses cookies to personalize your experience. By using this website you agree to our cookie policy.

Reply To: file-uploader hack

#10771
Ernest MarcinkoErnest Marcinko
Keymaster

Hi,

It’s definitely a false positive detection. It’s not possible to send any files or malicious information via that code. It’s a simple statement for renaming the search instances.

It’s passed to a verification handler, which is preceeded by a $wpdb->prepare statement, as well as the handler file only works for a logged in user on the back-end.