Date: Sat, 1 Mar 2014 20:45:16 +0200 From: Henri Salo <henri@...v.fi> To: oss-security@...ts.openwall.com Subject: CVE request: CMS Made Simple SQL injection fixed in 1.11.10 Hello, Can I get 2014 CVE for CMS Made Simple News sortby Parameter SQL injection vulnerability. http://www.cmsmadesimple.org/2014/02/Announcing-CMSMS-1-11-10-Pinzon/ http://dev.cmsmadesimple.org/project/changelog/4602 http://osvdb.org/103854 Fixed in latest stable: 1.11.10 --- Henri Salo [ CONTENT OF TYPE application/pgp-signature SKIPPED ]
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Powered by Openwall GNU/*/Linux - Powered by OpenVZ