oss-sec mailing list archives

CVE request: silverstripe - two sql injections


From: Hanno Böck <hanno () hboeck de>
Date: Mon, 13 Apr 2009 11:20:13 +0200

Versions below 2.2.2-rc2:
http://silverstripe.org/archive/show/43794
"AjaxUniqueTextField: fixed sql-injection "

More current:
http://open.silverstripe.com/ticket/3721
(maybe fixed in 2.3.1, but they don't tend to publish proper release notes)

-- 
Hanno Böck              Blog:           http://www.hboeck.de/
GPG: 3DBD3B20           Jabber/Mail:    hanno () hboeck de

Attachment: signature.asc
Description: This is a digitally signed message part.


Current thread: