Multiple vulnerabilities in LedgerSMB
[Posted January 26, 2010 by corbet]
Multiple vulnerabilities in LedgerSMB
[Security] Posted Jan 26, 2010 15:44 UTC (Tue) by corbet
Those of you using the LedgerSMB
accounting system will probably want to
look at the attached advisory; a number of vulnerabilities - including file
inclusion and SQL injection - have been fixed. At least some of these
vulnerabilities are present in SQL-Ledger as well.
Full Story (comments: none)