more information about Phpnuke issue, postnuke vulnerable too !

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi list and phpnuke admin !

As you know now, according to little advisory/demonstration
http://www.isecurelabs.com/article.php?sid=230 i wrote yesturday, phpnuke
store Base64 encoded admin password in a cookie that can be stolen.
Know that postnuke 0.6.4 is also vulnerable cause postnuke store base64
encoded admin password in a cookie.

regards,

---
Cabezon Aurélien | aurelien.cabezon@isecurelabs.com
http://www.iSecureLabs.com | French Security Portal


____________________________________________
" Sachez qu'aujourd'hui est le plus beau jour de votre vie,
car c'est le premier de ceux qu'il vous reste à vivre "


[Index of Archives]     [Linux Security]     [Netfilter]     [PHP]     [Yosemite News]     [Linux Kernel]

  Powered by Linux