• Hello – I uploaded all of the wordpress files to a clients website, but did not start the installation i.e. setting up the database or get it running at all. I was wondering without installing wordpress is the site vulnerable to hacker vulnerabilites? My client seems to think that “if WordPress and its plug-ins are not kept current”… the site is subject to “hacker vulnerabilities.” If I haven’t set up wordpress but simply uploaded the files, have not installed any plugins, etc. Would it be subject to any threats. WordPress is not even running, there has been no database connection set up, the files are just sitting on his shared server. Thanks so much for any advice. -Beth

Viewing 1 replies (of 1 total)
  • Moderator James Huff

    (@macmanx)

    The files could be altered by anyone with access to the hosting account, or exploited if they are out of date and have known vulnerabilities.

    You’re generally safe, but on the other hand, there’s no reason to upload WordPress files if you aren’t going to install WordPress, so personally I wouldn’t until I was ready.

Viewing 1 replies (of 1 total)
  • The topic ‘Threats to WordPress when Installation has not been initiated’ is closed to new replies.