Having a spare 40 minutes, I decided to try installing this software, and apart from the mistyped autp.php which I figured was auth.php; it installed easily and flawlessly.
Now to the all-important security alert?
I'm looking at deploying this shop system however the lack of responses to questions here, and more importantly the lack of response to the following is of great concern:
IG-Shop Input Validation Flaw in 'type_id' Permits SQL Injection and Cross-Site Scripting Attacks.
This report is here;
http://www.securitytracker.com/alert...b/1009249.html
Dated three months ago - is there a fix?
Having a spare 40 minutes, I decided to try installing this software, and apart from the mistyped autp.php which I figured was auth.php; it installed easily and flawlessly.
Now to the all-important security alert?
There are currently 1 users browsing this thread. (0 members and 1 guests)
Bookmarks