Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq
Multiple CSRF in SimplePHPBlog Oct 17 2007 02:00PM
deme hackish eu (1 replies)
Re: Multiple CSRF in SimplePHPBlog Oct 17 2007 07:27PM
Hanno Böck (ml hboeck de)
Am Mittwoch 17 Oktober 2007 schrieb deme (at) hackish (dot) eu [email concealed]:
> SimplePHPBlog
> Cross Site Request Forgeries
> Tested on v0.4.9

What's the purpose on reporting issues on old versions?
I don't know simplephpblog, but a quick look on their page tells me that
they've released a bunch of security related updates since 0.4.9. Their
current one is 0.5.1.

--
Hanno Böck Blog: http://www.hboeck.de/
GPG: 3DBD3B20 Jabber: hanno (at) hboeck (dot) de [email concealed]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.7 (GNU/Linux)

iD8DBQBHFmInr2QksT29OyARAqdJAJ9FvocEN3u0snDH8FrJq2YsILJIwACbBLmS
uWLWNCoB37LOXA3SVhx/yVk=
=1RBm
-----END PGP SIGNATURE-----

[ reply ]







 

Privacy Statement
Copyright 2008, SecurityFocus