Re: Multiple CSRF in SimplePHPBlog

看板Bugtraq作者時間18年前 (2007/10/19 03:19), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/2 (看更多)
--nextPart2173398.BEsV8VKLet Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: quoted-printable Content-Disposition: inline Am Mittwoch 17 Oktober 2007 schrieb deme@hackish.eu: > SimplePHPBlog > Cross Site Request Forgeries > Tested on v0.4.9 What's the purpose on reporting issues on old versions? I don't know simplephpblog, but a quick look on their page tells me that=20 they've released a bunch of security related updates since 0.4.9. Their=20 current one is 0.5.1. =2D-=20 Hanno B=C3=B6ck Blog: http://www.hboeck.de/ GPG: 3DBD3B20 Jabber: hanno@hboeck.de --nextPart2173398.BEsV8VKLet Content-Type: application/pgp-signature; name=signature.asc Content-Description: This is a digitally signed message part. -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.7 (GNU/Linux) iD8DBQBHFmInr2QksT29OyARAqdJAJ9FvocEN3u0snDH8FrJq2YsILJIwACbBLmS uWLWNCoB37LOXA3SVhx/yVk= =1RBm -----END PGP SIGNATURE----- --nextPart2173398.BEsV8VKLet--
文章代碼(AID): #175x7V00 (Bugtraq)
文章代碼(AID): #175x7V00 (Bugtraq)