Protect your wordpress Plugins directory

Shoemoney has posted about a potential security bug in Wordpress. Its an eye opener for me regarding public browsing of the Wordpress plugins directory. If you have a standard Wordpress install try to go to http://YOURDOMAINNAME.com/wp-content/plugins you will see a directory list of the files and not your actual web page. This can be a potential exploits if theres a security bug on your plugins installed.

You can disable it in .htaccess File by adding this line of code

Options All -Indexes

Published by admin on July 10th, 2007 tagged Tips

Leave a Comment

 
Rodney's Kontera DynamiContext Plugin plugged in.