All Content Management Systems: Web Progress Report

January 11th, 2008

Security : XoopsGallery Module ‘init_basic.php’ Remote File Include Vulnerability

XoopsGallery is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.

XoopsGallery 1.3.3.9 has been confirmed vulnerable.

We advise you to upgrade to XoopsGallery 2.1+ or inactivate the module immediately until this issue is solved.

Related CMS news:

Leave a Reply

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong>