SilverStripe CMS Unvalidated Redirect & XSS vulnerabilities

2015-06-09 Thread apparitionsec
[+] Credits: hyp3rlinx [+] Domains: hyp3rlinx.altervista.org [+] Source: http://hyp3rlinx.altervista.org/advisories/AS-SILVERSTRIPE0607.txt Vendor: http://www.silverstripe.org/software/download Product: SilverStripe CMS & Fram

SilverStripe CMS Unvalidated Redirect & XSS vulnerabilities

2015-06-09 Thread apparitionsec
[+] Credits: hyp3rlinx [+] Domains: hyp3rlinx.altervista.org [+] Source: http://hyp3rlinx.altervista.org/advisories/AS-SILVERSTRIPE0607.txt Vendor: http://www.silverstripe.org/software/download Product: SilverStripe CMS & Fram