sCRiPTSz.com » DataLife Engine » DataLife Engine v8.5 Bug Fix Conducting cross-site scripting attacks (XSS)
Information of news
  • Views: 1007
  • Author: reishi
  • Date: 16-06-2010, 11:33
16-06-2010, 11:33

DataLife Engine v8.5 Bug Fix Conducting cross-site scripting attacks (XSS)

Category: DataLife Engine


Problem: Under certain conditions on the site can be attacked XSS. These terms is to visit an authorized administrator, the attacker's website, with the use of administrator outdated browser, which may lead to the interception of cookies, browser.

Error in: 7.x - 8.5

The degree of danger: Low

To download the patch and copy to your own server patch: http://dle-news.ru/files/dle7_85_path.zip

This patch applies to all versions: 7.x - 8.5

Distribution version 8.5 has been updated.


Search on Google


Dear visitor, you went to website as unregistered user.
We encourage you to Register or Login to website under your name.