The SpamBam plugin for WordPress allows remote attackers to bypass restrictions and add blog comments by using server-supplied values to calculate a shared key.
- http://securityreason.com/securityalert/4438
- https://github.com/20142995/nuclei-templates