Re: [Full-disclosure] XSS and SQL Injection Vulnerabilities in M

看板Bugtraq作者時間12年前 (2013/07/12 02:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
--Oiv9uiLrevHtW1RS Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Thu, Jul 11, 2013 at 03:36:00PM +0300, Netsparker Advisories wrote: > Solution > -------------------- > - >=20 > Advisory Timeline > -------------------- > 26/02/2013 - First contact > 15/03/2013 - Fix & New MiniBB version released > 11/07/2013 - Advisory released Why solution is empty even vendor released new version? To me upgrading to = 3.0.1 looks like a solution without looking at the code. --- Henri Salo --Oiv9uiLrevHtW1RS Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iEUEARECAAYFAlHewe8ACgkQXf6hBi6kbk/mRACglW4qO97Q6Ta/st6xJUGGpNL3 eJEAlizWjQTGt8tc1X3QU7PkgXA6BJA= =C04p -----END PGP SIGNATURE----- --Oiv9uiLrevHtW1RS--
文章代碼(AID): #1HtlBVno (Bugtraq)