Hacker News new | past | comments | ask | show | jobs | submit login

You could also "cat /usr/local/wordpress/wp-config.php" and see the plaintext mysql username/password and inject malicious data into the DB, create/drop tables or databases depending on access level.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: