[ZendTo] Re: ZendTo: Release 4.11-13

Harris, David D.J.Harris at tees.ac.uk
Tue Dec 17 09:26:04 GMT 2013


Hi,

Is this the vulnerability I picked up with our Nessus scanner?

Also, I'm a bit of a linux idiot - what's the best way to perform the updates??

Dave


-----Original Message-----
From: zendto-bounces at zend.to [mailto:zendto-bounces at zend.to] On Behalf Of Jules
Sent: 14 December 2013 13:47
To: ZendTo Users
Subject: [ZendTo] ZendTo: Release 4.11-13

Folks,

I have just released a new version to fix the vulnerability found by Richard Rogerson in ZendTo. It's a cross-site scripting vulnerability that I let through by mistake.
I have done a similar test to the one Richard used to demonstrate it, and the fault is now caught correctly.

Please upgrade and let me know that it works for you!

Jules

--
Julian Field MEng MBCS CITP CEng

South-east Iceland: Cyclonic, 5 to 7, increasing gale 8 to storm 10 in east.
Very rough or high. Rain or squally showers. Good, occasionally poor.

www.Zend.To
Twitter: @JulesFM
PGP footprint: EE81 D763 3DB0 0BFD E1DC 7222 11F6 5947 1415 B654

_______________________________________________
ZendTo mailing list
ZendTo at zend.to
http://mailman.ecs.soton.ac.uk/mailman/listinfo/zendto



More information about the ZendTo mailing list