PDA

Просмотр полной версии : Multiple vulnerabilities in Drag Drop Mass Upload (ameos_dragndropupload)


RSS Bot
15.12.2014, 19:03
It has been discovered that the extension "Drag Drop Mass Upload" (ameos_dragndropupload) is susceptible to Cross-Site Scripting, Cross-Site Request Forgery and Improper Access Control.

More... (http://www.typo3.org/news/article/improper-access-control-in-drag-drop-mass-upload-ameos-dragndropupload/)