|
|
|
DotNetNuke Multiple Exploits - Low Risk |
|
Security Alerts
|
By host on
6/2/2008 8:49 AM
|
|
|
|
A security vulnerability has been found in all DotNetNuke versions including 4.8.3 that can be exploited to allow malicious individuals to cause Denial of Service attacks (DoS) manipulate URLs, create cross site scripting issues and bypass DotNetNuke security restrictions.
|
 |
|
|
More...
|
|
|
DotNetNuke Security Alert: Machine Key Validation |
|
Security Alerts
|
By host on
5/28/2008 11:14 AM
|
|
|
|
A security exposure in DotNetNuke that could be used to forge authentication tokens and impersonate arbitrary users (including the built in admin account). has now corrected with the release of DotNetNuke version 4.8.2 This issue affects DotNetNuke versions 4.8.1 and below.
We strongly recommend that you follow the directions provided in Brian Holyfield's Blog at Gotham Digital Science website to make sure your website is not at risk.
|
 |
|
|
More...
|
|
|
|
|