Home | Contact | Search | About

Navigation

Syndicate

cmsInfo

PHProjekt

PHProjekt 3.1b

Changes: The release fixes a security hole in version 3.1 and 3.1a: Under certain circumstances it is possible to insert poisoned code into a script by modifying a path variable so it points to another server, (more specific action is needed) leading to a possible inclusion of bad code from this server. This hole concerns particularly those installations - with a connection to the Internet - with allow_url_fopen=on (which is the default configuration in the php.ini) You are strongly encouraged to update to version 3.1b or at least to set allow_url_fopen=off if possible.

Download PHProjekt 3.1b

Syndicate content


Google
 
Web www.cmsinfo.org