Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

PHParanoid Cross-Site Request Forgery and Security Bypass

BugsAlert Home > PHParanoid Cross-Site Request Forgery and Security Bypass
 
 

Some vulnerabilities have been reported in PHParanoid, which can be exploited by malicious people to conduct cross-site request forgery attacks and to bypass certain security restrictions.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/28847/

Learn more about PHParanoid Cross-Site Request Forgery and Security Bypass
 
Tags: phparanoid cross-site request forgery security bypass

Related Items

      /bin/login gives root to group utmp

      Red Hat update for xorg-x11-server

      LoveCMS Download Manager Module File Upload Vulnerability

      CVE-2008-1847 (phpAddressBook)

      CVE-2008-5413 (websphere_application_server)

      HP-UX X Font Server (xfs) Remote Command Execution Vulnerability

      IBM Tivoli Service Desk Description Cross Site Scripting Vulnerability

 

Pixel