BlackCatDevelopment / BlackCatCMS

BlackCat CMS is a PHP5, HTML5 content management system
https://blackcat-cms.org
Other
11 stars 9 forks source link

HTB23263 Directory traversal vulnerability #309

Closed webbird closed 9 years ago

webbird commented 9 years ago

A path traversal vulnerability was reported for file ./modules/blackcat/widgets/logs.php

https://www.htbridge.com/advisory/HTB23263

See

http://forum.blackcat-cms.org/viewtopic.php?f=22&t=423

for a quick fix and a hotfix beta.

webbird commented 9 years ago

Update for module "blackcat" is available in the forum. A BC release 1.1.2 containing the fix is available, too.