Thanks for the nice plugin. Works well and made my work easy. :-)
Check the following link for more details on the plugin.
http://www.exploit-db.com/exploits/17808/
My database was hacked into 2 days ago, and my web host support technician emailed me, detailing that this could be the vulnerable plugin on my site...
Is there a way to keep protected, besides a .htaccess protection method?