News

  News


Security fix for DBHcms 1.1.4

Detected remote file inclusion exploit


It has been detected a vulnerability in DBHcms, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.

Input passed to the "extmanager_install" parameter in dbhcms/mod/mod.extmanager.php is not properly verified before being used to include files. This can be exploited to include arbitrary files from local or external resources.

The vulnerability is confirmed in version 1.1.4.

To fix this security leak, download the security-fix-001 and replace the file mod.extmanager.php in the folder dbhcms/mod/.

 

 



  Subscribe Newsletter
Name: Email:

  CNN Technology News

A mock funeral is being held in Colorado Thursday for an old friend. The deceased? Internet Explorer 6. The aging Web browser is actually still widely used, but Google's decision to phase out IE6 may hasten its demise.

[ Read more »]
Thu, 04 Mar 2010 11:50:13 EST
We already connect with friends on Facebook to share photos, videos, text updates and Web links, but might we also use the service to exchange money?

[ Read more »]
Thu, 04 Mar 2010 17:25:44 EST
On January 12, a magnitude-7.0 quake struck Haiti just southwest of the capital, Port-au-Prince. On February 27, an 8.8-magnitude quake hit Chile near that nation's second largest city, Concepcion. That same day there was a 7.0 quake off the coast of Okinawa, Japan, and just this week a 6.4 quake hit southern Taiwan.

[ Read more »]
Thu, 04 Mar 2010 17:04:58 EST
The hard-boozing characters of "Mad Men" and the Muppets of "Sesame Street" were among the big winners of this year's Shorty Awards, which honor the top micro-bloggers of Twitter.

[ Read more »]
Thu, 04 Mar 2010 17:20:10 EST
Two people were killed when unusually large and powerful waves crashed into a cruise ship in the Mediterranean Sea this week.

[ Read more »]
Thu, 04 Mar 2010 15:00:54 EST
First, there was the Macintosh. Then it was the iPod, the iPhone, and now the iPad. Next up in Apple's arsenal: The lawyers.

[ Read more »]
Thu, 04 Mar 2010 13:54:15 EST
The Israel Defense Forces called off a raid after one of its combat soldiers posted information about the operation, including the time and place, on Facebook, the IDF said Wednesday.

[ Read more »]
Thu, 04 Mar 2010 13:39:43 EST
The Internet is awash with hate. It is the favorite tool of racists, anti-Semites, homophobes and other bigots. They host Web sites, upload videos and post comments intended to propagate the lies of prejudice, to recruit like-minded haters, to mislead children and to hurt minorities.

[ Read more »]
Thu, 04 Mar 2010 12:32:27 EST
Authorities have arrested three Spaniards suspected of infecting 13 million computers with a program that allowed them to steal personal and financial data worldwide, Spain's Civil Guard said Wednesday.

[ Read more »]
Wed, 03 Mar 2010 10:52:20 EST

Last update: 30.11.2006 10:42:31