Welcome to Geeklog, Anonymous Thursday, March 28 2024 @ 07:29 am EDT

Forum Plugin Version 2.7.1 - Security Fix

  • Saturday, July 19 2008 @ 09:31 am EDT
  • Contributed by:
  • Views: 19,739
Security

A possible Cross-Site security vulnerability has been identified by NetAgent Co., Ltd. and JPCERT/CC Lt - http://jvn.jp/

The issue is with the forum search not correctly filtering out javascript. This new release addresses that issue and all sites are recommended to upgrade to this latest release which is now available in the downloads area.

The upgrade steps are to replace the changed files and run the plugin upgrade.
  • public_html/index.php
  • config.php
  • functions.inc