• +ES

    (@evelynmsdesigngraphicscom)


    Hello+

    I am running WordFence Security on my site and it has flagged a specific file:

    wp-includes/SimplePie/Decode/HTML/wp-config.php

    With Specific Code:

    “shell_exec($_POST”

    It is stating that this specific code is a PHP Backdoor for malicious attackers. Is true?
    If so, do I remove just the specific code? Or the wp-config.php file (inside wp-includes/SimplePie/Decode/HTML/wp-config.php)?

    I have done some looking around on the web (and WordFence) and I saw that wp-includes/SimplePie is a necessary part of WordPress, but I cannot find anything on the wp-config.php file inside the
    wp-includes/SimplePie/Decode/HTML/wp-config.php

    So, I’m at a loss as to how to handle this. Any guidance would be greatly appreciated!
    Thank you.

  • The topic ‘Is wp-includes/SimplePie/Decode/HTML/wp-config.php necessary?’ is closed to new replies.