Junior Member
Junior Member
Petros   08-07-2009, 12:27
#1

More information here:
http://www.zenphoto.org/trac/ticket/1183

E-mail/PM me for the exploit source and the patch for it. The exploit only works if you aren't logged in already (which a hacker probably isn't anyway) but keep that in mind if you are going to test it. I only tested it on a server with magic_quotes_gpc = off.

Administrator
Administrator
acrylian   08-07-2009, 13:40
#2

The ticket is actually enough. Please see my comment there.

Member
Member
sbillard   09-07-2009, 19:42
#3

A fix for this issue has been released and will be in the nightly build of 9 July.

  
Powered By MyBB, © 2002-2026 MyBB Group.
Made with by Curves UI.