Entertainment,Music Movie News,Download Free Software,Data Management,Computer software,website scam anti phishing,Search Engine Submission ranking ,Travel Holiday Tips,Finance investing tips,shopping place,cheap web hosting,business plan,life style,diet losing weight,plastic Cosmetic surgery,diet pills medical,Linux software tips,ubuntu open source
|
ImpressCMS: PHP Session Security Patch - 1.1.1 RC |
|
ImpressCMS is a community developed Content Management System, developed in PHP and MySQL. With this tool, maintaining the content of a website becomes as easy as writing a document!
ImpressCMS takes security responsibly and as such whenever a vulnerability is found we work around the clock to fix the issue along with intensive testing trials in an attempt to minimise any other issues arising.
ImpressCMS 1.1.1 fixes a security related issue which relates to Sessions Fixation whereby an attacker can exploit this issue by enticing an unsuspecting victim into following a malicious URI and thus gaining unauthorised access.
We would like to thank HACKATTACK IT SECURITY GmbH whom reported this security risk so that we could take prompt action to address the issue for our users.
This patch will fix the issue at hand and as such is highly recommended.
Changes
Fixed
* #2354713: Security issue in SESSION id (vaughan/malanciault)
* #2300634: Blocks Positions admin (real_therplima/trabis)
Improved
* If an email notification is sent on PM, the user's email will appear in the From header if he has activated "Allow other users to view my email address" (malanciaut)
Changelog - http://wiki.impresscms.org/index.php?title=Change_Log
Where can I get the files?
As usual you can download all the files from our Source Forge site - http://sourceforge.net/project/showfiles.php?group_id=205633&package_id=245707&release_id=644493
Upgrade:
* xoops-or-impresscms_1.0_to_impresscms_1.1.1.tar.gz
* xoops-or-impresscms_1.0_to_impresscms_1.1.1.zip
New Install:
* impresscms_1.1.1_rc1.tar.gz
* impresscms_1.1.1_rc1.zip
How to upgrade to ImpressCMS 1.1.1
* Upgrading from ImpressCMS 1.1
http://wiki.impresscms.org/index.php?title=Release_notes_1.1.1#Upgrading_from_ImpressCMS_1.1_or_newer
* Upgrading from XOOPS or ImpressCMS 1.0
http://wiki.impresscms.org/index.php?title=Release_notes_1.1.1#Upgrading_from_an_older_version
Full Install
If you're making a fresh install, download the full package and perform a normal installation (instructions are contained within the package or available in our release notes).
ImpressCMS Project.
Timothy Bowers & Steve Kenow.
Spokespersons.
http://community.impresscms.org
###
Read More :
|
|
|
MiniWB an
Information Web providing useful information about Entertainment,Music Movie News,Download Free Software,Data Management,Computer software,website scam anti phishing,Search Engine Submission ranking ,Travel Holiday Tips,Finance investing tips,shopping place,cheap web hosting,business plan,life and style,diet losing weight,plastic Cosmetic surgery,diet pills medical,Linux software tips,ubuntu open source and more.
SEO (
Search Engine Optimization )
& Search Engine Marketing by
www.miniwb.com