AntiSnatchOr.com - Keep It Simple Stupid

  • about
  • security advisories
  • contact
  • publications
  • my books
Home › Blogs › euronymous's blog

OpenCMS public vuln disclosure at the end of March

euronymous — 16 February, 2011 - 18:19

Hello everyone,

I've found a couple of vulnerabilities in OpenCMS 7.5.3 (http://www.opencms.org),
the latest stable build at the time of writing.

I will disclose them as soon as they will be patched (version 7.5.4, as Michael Himmerich from Alkacon said me),
more or less at the end of March.

UPDATE: public disclosure here (http://antisnatchor.com/opencms_7.5.3_multiple_vulnerabilities)

It's always a pleasure to help open source projects that replies you in a few hours,
with a prompt solutions and a nice disclosure scheduling.

antisnatchor

  • euronymous's blog
  • Add new comment

Recent blog posts

  • Advances in BeEF: AthCon 2012
  • Debugging Ruby 1.9.3p125
  • BeEF on OpenBSD
  • Meet BeEF at DeepSec 2011
  • My BeEF talk at CONFidence 2011
  • JBoss JMX Deploy Exploit
  • Enumerate potential DOM-based XSS vulnerable code
  • I will speak at Confidence 2011
  • DotCloud Beta Multiple Vulnerabilities
  • OpenCMS <= 7.5.3 multiple vulnerabilities
more

Who's online

There are currently 0 users and 2 guests online.

Powered by Drupal, an open source content management system
  • about
  • security advisories
  • contact
  • publications
  • my books