info
discussion
exploit
solution
references
MyDMS SQL Injection Vulnerability And Directory Traversal Vulnerability
Solution:
The vendor has released version 1.4.3 to address these issues:
MyDMS MyDMS 1.4
MyDMS mydms-1.4.3.tar.gz
http://dms.markuswestphal.de/download.php?path=archives&filename=mydms -1.4.3.tar.gz
MyDMS MyDMS 1.4.1
MyDMS mydms-1.4.3.tar.gz
http://dms.markuswestphal.de/download.php?path=archives&filename=mydms -1.4.3.tar.gz
MyDMS MyDMS 1.4.2
MyDMS mydms-1.4.3.tar.gz
http://dms.markuswestphal.de/download.php?path=archives&filename=mydms -1.4.3.tar.gz
Privacy Statement
Copyright 2010, SecurityFocus