News

  News


Security fix for DBHcms 1.1.4

Detected remote file inclusion exploit


It has been detected a vulnerability in DBHcms, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.

Input passed to the "extmanager_install" parameter in dbhcms/mod/mod.extmanager.php is not properly verified before being used to include files. This can be exploited to include arbitrary files from local or external resources.

The vulnerability is confirmed in version 1.1.4.

To fix this security leak, download the security-fix-001 and replace the file mod.extmanager.php in the folder dbhcms/mod/.

 

 



  Subscribe Newsletter
Name: Email:

  CNN Technology News

Last week, The New York Times gave us an inside look at what it's like to work at Foxconn, the manufacturing company that owns several China-based factories that crank out Apple's iPads, iPhones and iPods by the millions.

[ Read more »]
Tue, 31 Jan 2012 09:36:59 EST
Apple's ambition to improve the fidelity of music downloads has diminished since the death of founder Steve Jobs, according to singer-songwriter Neil Young.

[ Read more »]
Tue, 31 Jan 2012 16:01:49 EST
Douglas Rushkoff says Facebook going public would not be about continuing to redefine the world but about a company forced by its own success to yield to market forces

[ Read more »]
Tue, 31 Jan 2012 09:37:50 EST
Federal prosecutors who accuse file-sharing site Megaupload of being a hotbed of digital piracy say the site's customer files, presumably including perfectly legal ones, may be deleted starting Thursday.

[ Read more »]
Tue, 31 Jan 2012 10:01:54 EST
The ability to control a Windows desktop with a simple hand gesture could become reality sooner than we once thought.

[ Read more »]
Mon, 30 Jan 2012 09:42:29 EST
Anna Dietrich is working on an aircraft that can fold its wings and drive on the road

[ Read more »]
Sun, 29 Jan 2012 09:12:51 EST
Seeking to blunt a sharp backlash to its latest privacy changes, Google on Friday offered to share "the real story" about a new system that creates a profile on users based on their activity on all of Google's sites and products.

[ Read more »]
Fri, 27 Jan 2012 16:49:32 EST
Dana White loves a good fight.

[ Read more »]
Fri, 27 Jan 2012 13:26:37 EST
For Heather Neroy, it used to be a tedious process: Whenever she came across an interesting arts-and-crafts project or recipe on the Internet, she would save it for later by copying the link, pasting it into an e-mail and sending it to herself.

[ Read more »]
Thu, 26 Jan 2012 11:05:04 EST

Last update: 30.11.2006 10:42:31