{"id":137,"date":"2006-09-04T13:47:21","date_gmt":"2006-09-04T11:47:21","guid":{"rendered":"http:\/\/www.gatellier.be\/blog\/?p=137"},"modified":"2009-04-27T10:53:45","modified_gmt":"2009-04-27T08:53:45","slug":"tentatives-attaques-xmlrpc","status":"publish","type":"post","link":"https:\/\/gatellier.be\/blog\/tentatives-attaques-xmlrpc\/","title":{"rendered":"Tentatives d\u2019attaques sur xmlrpc.php"},"content":{"rendered":"<p>J&#8217;ai fait un petit tours dans mes logs et je constate qu&#8217;il y a des tentatives d&#8217;exploitations de faille sur WordPress.<\/p>\n<p>Il s&#8217;agit, j&#8217;imagine, d&#8217;un bot qui tente d&#8217;exploiter une vieille faille de WordPress qui m&#8217;<a href=\"\/\/secunia.com\/advisories\/15852\/\">a l&#8217;air d&#8217;\u00eatre celle-ci<\/a>.<\/p>\n<p>Je recommande donc vivement les utilisateurs WordPress de <strong>mettre leur version \u00e0 jour<\/strong> (<a href=\"\/\/wordpress.org\/download\/\">v2.0.4<\/a>) et d&#8217;employer le plugin <a href=\"\/\/blog.ftwr.co.uk\/wordpress\/wp-version-check\/\"><strong>PJW WordPress Version Check<\/strong><\/a> qui affiche une ligne dans la console d&#8217;administration pour dire le status de votre version de WordPress<\/p>\n<p>Extrait de mes logs :<\/p>\n<pre class=\"brush: xml; title: ; notranslate\" title=\"\">\r\n68.89.214.130 - - &#x5B;03\/Sep\/2006:23:26:49 +0200] &quot;POST \/blog\/tags\/marin\/firefox\/xmlrpc.php HTTP\/1.1&quot; 404 22401 &quot;-&quot; &quot;Internet Explorer 6.0&quot;\r\n\r\n68.89.214.130 - - &#x5B;03\/Sep\/2006:23:26:52 +0200] &quot;POST \/blog\/tags\/marin\/firefox\/xmlrpc.php HTTP\/1.1&quot; 404 22401 &quot;-&quot; &quot;Internet Explorer 6.0&quot;\r\n\r\n68.89.214.130 - - &#x5B;03\/Sep\/2006:23:26:54 +0200] &quot;POST \/blog\/tags\/marin\/firefox\/xmlsrv\/xmlrpc.php HTTP\/1.1&quot; 404 22401 &quot;-&quot; &quot;Internet Explorer 6.0&quot;\r\n\r\n68.89.214.130 - - &#x5B;03\/Sep\/2006:23:26:54 +0200] &quot;POST \/xmlrpc.php HTTP\/1.1&quot; 404 216 &quot;-&quot; &quot;Internet Explorer 6.0&quot;\r\n\r\n68.89.214.130 - - &#x5B;03\/Sep\/2006:23:26:55 +0200] &quot;POST \/xmlrpc\/xmlrpc.php HTTP\/1.1&quot; 404 223 &quot;-&quot; &quot;Internet Explorer 6.0&quot;\r\n\r\n68.89.214.130 - - &#x5B;03\/Sep\/2006:23:26:55 +0200] &quot;POST \/xmlsrv\/xmlrpc.php HTTP\/1.1&quot; 404 223 &quot;-&quot; &quot;Internet Explorer 6.0&quot;\r\n<\/pre>\n","protected":false},"excerpt":{"rendered":"<p>J&#8217;ai fait un petit tours dans mes logs et je constate qu&#8217;il y a des tentatives d&#8217;exploitations de faille sur WordPress. Il s&#8217;agit, j&#8217;imagine, d&#8217;un bot qui tente d&#8217;exploiter une vieille faille de WordPress qui m&#8217;a l&#8217;air d&#8217;\u00eatre celle-ci. Je recommande donc vivement les utilisateurs WordPress de mettre leur version \u00e0 jour (v2.0.4) et d&#8217;employer [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[27,17],"tags":[],"class_list":["post-137","post","type-post","status-publish","format-standard","hentry","category-blog","category-wordpress"],"_links":{"self":[{"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/posts\/137","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/comments?post=137"}],"version-history":[{"count":0,"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/posts\/137\/revisions"}],"wp:attachment":[{"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/media?parent=137"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/categories?post=137"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/gatellier.be\/blog\/wp-json\/wp\/v2\/tags?post=137"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}