Looks like it’s blogging time. For unknown reasons (unknown my ass – boredom and lack of beer), I took a deeper look at Lansuite. The last version (v3.someting CVS) was full of XSS and SQL injection bugs but after reporting it they fixed many, but not all of them. There are still 3 XSS bugs. Well they don’t directly affect Lansuite but phgstats. You can find a few details about it here. Have fun.

Keine Kommentare möglich.