Secunia has published my new security Adsvisory regarding a new vulnerability found in latest release (and lower) of Contao CMS(fka TYPOlight). This vulnerability allows an attacker to delete administrator/users, articles, news, newsletter andmodify many other parameters.
To read Secunia's Advisory:
http://secunia.com/advisories/48180/
To learn more about my Original Advisory:
http://ivanobinetti.blogspot.com/2012/02/contaocms-fka-typolight-211-csrf-delete.html
Secunia - Contao cms (fka TYPOlight) CSRF Vulnerability
Posted on mercoledì 29 febbraio 2012
by Ivano Binetti
Iscriviti a:
Commenti sul post (Atom)
0 Responses to "Secunia - Contao cms (fka TYPOlight) CSRF Vulnerability":
Posta un commento