[Logo] JForum - Powering Communities
  [Search] 搜尋   [Recent Topics] 最新主題   [Hottest Topics] 熱門主題   [Top Downloads] 熱門下載   [Groups] 回首頁 
[Register] 會員註冊 /  [Login] 登入 


JForum 2.8.3 is out with various fixes and improvements. Read all about it here

[JForum Security Vulnerabilities Notification]SN-15-01: JFORUM MULTIPLE VULNERABILITIES RSS feed
討論區首頁 » Announcements
發表人 內容
andowson


註冊時間: 2011/6/30
文章: 250
離線
Secure Network releases the security advisory SN-15-01 for multiple vulnerabilities found in JForum.

SN-15-01: multiple vulnerabilities have been identified in JForum version 2.1.9 stable and its unofficial updated version 2.3.5, ranging from high-impact issues like Stored Cross-Site Scripting (XSS) and Remote Code Execution (RCE) to lower-impact ones like missing security flag for session cookie. Older versions may also be vulnerable.

Source URL:
https://www.securenetwork.it/en/research/advisories/2015/02/sn-15-01/

Please update to JForum version 2.4.0 or later.
 
討論區首頁 » Announcements
前往:   
行動版
Powered by JForum 2.8.3 © 2023 JForum Team • Maintained by Andowson Chang and Ulf Dittmer