Bugtraq mailing list archives

Geeklog <=1.5.2 'SESS_updateSessionTime()' vulnerability


From: nospam () gmail it
Date: 9 Apr 2009 10:35:10 -0000

As the vendor stated, see:
http://www.geeklog.net/article.php/geeklog-1.5.2sr2

geeklog is also vulnerable to this:
http://www.securityfocus.com/bid/34361/info

actually this should be renamed in 

glFusion 'SESS_updateSessionTime()' SQL Injection Vulnerability


Current thread: