首页
社区
课程
招聘
Joomla3.2.2很容易受到SQL注入和跨站脚本攻击
发表于: 2014-3-9 04:03 802

Joomla3.2.2很容易受到SQL注入和跨站脚本攻击

2014-3-9 04:03
802
新闻链接:http://www.ehackingnews.com/2014/03/joomla-322-is-vulnerable-to-sql.html
新闻时间:2014年03月07日
新闻正文:Joomla 3.2.2 is vulnerable to SQL Injection and XSS

If your website is running Joomla 3.2.2, you should upgrade your CMS to the latest version.

A new version of Joomla v3.2.3 has been released to address more than 40 bugs and four security vulnerabilities.

One of the patched security flaws is SQL Injection, caused by Inadequate escaping, rated as High severity bug.  It affects versions 3.1.0 through 3.2.2.

Other two security bugs are Cross site scripting vulnerabilities, which have been rated as Medium severity bugs.

The last one allows unauthorized logins via GMail authentication, caused by inadequate checking. It affects versions 2.5.8 and earlier 2.5.x and 3.2.2 and earlier 3.x.

It doesn't matter whether you do care about the 40 bugs but you always should consider the security fixes.  So, better update your cms immediately before attackers informing you by hacking your site.

[注意]传递专业知识、拓宽行业人脉——看雪讲师团队等你加入!

收藏
免费 0
支持
分享
最新回复 (0)
游客
登录 | 注册 方可回帖
返回
//