Archived CMSimple Support Forum

The Old CMSimple User Community
It is currently Thu Sep 02, 2010 4:38 pm

This archived CMSimple Support Forum will be locked primo June 2008. Users with a commercial licence are advised to register and use the new Official Support Forum at CMSimple.com instead. A community driven forum with free registration is found at cmsimpleforum.com.

All times are UTC




Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 2 posts ] 
Author Message
 Post subject: CMSsimple mailform "sender" XSS Vulnerability
PostPosted: Wed Feb 14, 2007 3:51 pm 
Offline

Joined: Thu Jun 12, 2003 7:05 am
Posts: 729
Look here: http://secunia.com/advisories/23951/

Peter, do you know about it?


Top
 Profile  
 
 Post subject:
PostPosted: Mon Feb 26, 2007 10:38 am 
Offline
Site Admin

Joined: Mon May 12, 2003 12:36 pm
Posts: 3091
Location: Rutsker, Bornholm, Denmark
Strange they didn't inform me ... well, I suppose the problem is this: http://www.harteg.dk/?&mailform=</textarea>[Some+dangerous+code]

I will make a fix soon.


Top
 Profile  
 
Display posts from previous:  Sort by  
Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 2 posts ] 

All times are UTC


Who is online

Users browsing this forum: MSN [Bot] and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
cron
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group