sCRiPTSz.com » DataLife Engine » DataLife Engine v8.5 Bug Fix Conducting cross-site scripting attacks (XSS)
Information of news
  • Views: 939
  • Author: reishi
  • Date: 16-06-2010, 11:33
16-06-2010, 11:33

DataLife Engine v8.5 Bug Fix Conducting cross-site scripting attacks (XSS)

Category: DataLife Engine


Problem: Under certain conditions on the site can be attacked XSS. These terms is to visit an authorized administrator, the attacker's website, with the use of administrator outdated browser, which may lead to the interception of cookies, browser.

Error in: 7.x - 8.5

The degree of danger: Low

To download the patch and copy to your own server patch: http://dle-news.ru/files/dle7_85_path.zip

This patch applies to all versions: 7.x - 8.5

Distribution version 8.5 has been updated.


Search on Google


Dear visitor, you went to website as unregistered user.
We encourage you to Register or Login to website under your name.
<
Granilv

7 February 2012 11:43

Information of comment
  • Group: MeMbEr
  • ICQ: --
  • Register: 31.01.2012
  • News: 0
  • Comments: 5
Сироткин АлександР intfashion.ru мумбай
паркур в россии catsfriends Независимая газета
Сетка сварная н/у 10х10х1,4 ТУ 1275-012-00187205-2002 singfinance.info анализаторы спектра IFR
Information
Members of GuEsT cannot leave comments.