Submitted | 10 June 2011 |
Advisory ID | USHAHIDI-SA-WEB-2011-001 |
Risk | Moderate |
Platform | Ushahidi |
Version | 2.0.1 |
Description:
We were recently contacted by Gjoko Krstic from the Zero Science Lab about a vulnerability in the Admin dashboard. This vulnerability allows for a specially crafted URL to inject SQL code.
Instructions:
Please update your deployment to the latest version.
Download (ZIP; click to download) | md5 |
---|---|
Ushahidi 2.1 (Tunis) |