Quick Login   
 
Register AdminFusion Tutorials Post Fusion Forum Matrix
 
Go Back AdminFusion » Software & Tech » Software » Invision Power Board » [IPB News] IP.Board 2.2.x XSS Update
Reply
 
LinkBack
Old 05-30-2007, 10:11 PM   #1
Forum Guru
 
Join Date: Sep 2005
Posts: 8,310
Industry News is on a distinguished road
Post [IPB News] IP.Board 2.2.x XSS Update

IP.Board 2.2.x Possible XSS Issue

It has come to our attention that IP.Board 2.2.x may be vulnerable to an XSS (cross-site scripting) attack by injecting JavaScript into supplementary files used by our rich text editor. It should be noted that this damage is mitigated by the "HttpOnly" cookies which were introduced into IP.Board 2.2.0. This means that sensitive cookies in IP.Board 2.2.0 and higher cannot be read by JavaScript which could be crafted using this issue.

This update is very simple and straightforward and only affects these supplementary files. The attached zip file contains all the required files. Simply upload them over the existing files on your server.

More...
Industry News is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
[IPB News] IPB 2.1.x Security Update Notice (06-30-2006) Industry News Invision Power Board 3 07-03-2006 02:03 PM
[IPB News] IPB 2..x Update (06-05-22) Industry News Invision Power Board 0 05-23-2006 04:21 AM
[IPB News] IPB 2.x.x Security Update (06-05-6) Industry News Invision Power Board 0 05-17-2006 06:07 PM
[IPB News] IPB 2.x.x Security Update (04-25-06) Industry News Invision Power Board 0 04-25-2006 03:08 PM
[IPB News] IPB 2.x.x Critical Security Update Industry News Invision Power Board 0 01-05-2006 09:08 PM

AdminFusion

All times are GMT +1. The time now is 04:16 PM. Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

© 2009 AdminFusion | Advertising Opportunities | Legal | A member of the Crowdgather Forum Community
 
From:
Title:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77