Welcome to Geeklog, Anonymous Tuesday, December 03 2024 @ 12:45 pm EST

Forum Plugin Version 2.7.1 - Security Fix

  • Saturday, July 19 2008 @ 09:31 am EDT
  • Contributed by:
  • Views: 21,558
Security

A possible Cross-Site security vulnerability has been identified by NetAgent Co., Ltd. and JPCERT/CC Lt - http://jvn.jp/

The issue is with the forum search not correctly filtering out javascript. This new release addresses that issue and all sites are recommended to upgrade to this latest release which is now available in the downloads area.

The upgrade steps are to replace the changed files and run the plugin upgrade.
  • public_html/index.php
  • config.php
  • functions.inc