Bugtraq mailing list archives
Re: Phorum 3.4 Cross Site Scripting
From: Hagen Kühnel - HagK <hagk () hagk de>
Date: Thu, 3 Apr 2003 08:26:33 +0200
Am Mit, 02 Apr 2003, schrieb Peter Stöckli:
Solution: Edit the source code to strip malicious characters from title or escape malicious characters using addslashes().
Phorum 2.4.2 is availaible. and the Phorum Homepage: ### Phorum 3.4.2 Released - SECURITY NOTICE Category: New Release Written by brianlmoon at 6:06pm on April 2, 2003 ### http://phorum.org/ hagen -- 16/ 65 In dem Augenblick, wo wir anfangen unsere Freiheitsrechte einzuschränken, besorgen wird das Geschäft der Terroristen. Günter Grass
Current thread:
- Phorum 3.4 Cross Site Scripting Stöckli (Apr 02)
- Re: Phorum 3.4 Cross Site Scripting Hagen Kühnel - HagK (Apr 03)
- <Possible follow-ups>
- Re: Phorum 3.4 Cross Site Scripting Brian Moon (Apr 03)