Serious Security Exploit – Disable this plugin now!
-
If you use this plugin disable it now!
Your Pingdom username & password are shown in plain text in every page of your website. And thanks to Google it’s probably been cached like that for months.
See below for the error the plugin throws:
b>Warning</b>: SoapClient::SoapClient(https://wsbusiness2.pingdom.com/Business.asmx?WSDL) [soapclient.soapclient]: failed to open stream: No route to host in <b>/home/anagalia/webapps/www/wp-content/plugins/pingdom-status/php/wsproxy/PingdomStatus_business.php</b> on line <b>
67</b><b>Warning</b>: SoapClient::SoapClient() [soapclient.soapclient]: I/O warning : failed to load external entity "https://wsbusiness2.pingdom.com/Business.asmx?WSDL" in <b>/home/anagalia/webapps/www/wp-content/plugins/pingdom-status/php/wsproxy/PingdomStatus_business.php</b> on line <b>67</b>
Tuesday 05th of February 2013 11:21:05 PM -> Error refreshing sensors: SOAP-ERROR: Parsing WSDL: Couldn’t load from ‘https://wsbusiness2.pingdom.com/Business.asmx?WSDL’ : failed to load external entity “https://wsbusiness2.pingdom.com/Business.asmx?WSDL”
<b>Warning</b>: SoapClient::SoapClient(https://wssecurity2.pingdom.com/Security.asmx?WSDL) [soapclient.soapclient]: failed to open stream: No route to host in <b>/home/anagalia/webapps/www/wp-content/plugins/pingdom-status/php/wsproxy/PingdomStatus_wsmain.php</b> on line <b
>46</b><b>Warning</b>: SoapClient::SoapClient() [soapclient.soapclient]: I/O warning : failed to load external entity "https://wssecurity2.pingdom.com/Security.asmx?WSDL" in <b>/home/anagalia/webapps/www/wp-content/plugins/pingdom-status/php/wsproxy/PingdomStatus_wsmain.php<
span></b> on line <b>46</b>
Error in Pingdom web service call from function authenticate. Request:
Login::__set_state(array(
‘apiKey’ => ‘1a6af666cb1bb5611ea7b06c325fc931’,
‘username’ => ‘****************’,
‘password’ => ‘****************’,
))Response:
LoginResponse::__set_state(array(
‘LoginResult’ => NULL,
))
- The topic ‘Serious Security Exploit – Disable this plugin now!’ is closed to new replies.