1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

[SECURITY] [3/5] Sava CMS Cross-Site Scripting and SQL Injection

Discussion in 'Security News' started by Echo419, May 24, 2008.

  1. Echo419

    Echo419 FS Owner

    Russ McRee has reported some vulnerabilities in Sava CMS, which can be exploited by malicious people to conduct SQL injection and cross-site scripting attacks.


    Be sure to check if your system is missing security updates or have insecure applications installed:
    http://secunia.com/software_inspector/

    Feature Overview - The Secunia Software Inspector:
    * Detects insecure versions of applications installed
    * Verifies that all Microsoft patches are applied
    * Assists you in updating your system and applications
    * Runs through your browser. No installation or download is required.

    More...
     

Share This Page