Submitted10 June 2011
Advisory IDUSHAHIDI-SA-WEB-2011-001
RiskModerate
PlatformUshahidi
Version2.0.1

Description:

We were recently contacted by Gjoko Krstic from the Zero Science Lab about a vulnerability in the Admin dashboard. This vulnerability allows for a specially crafted URL to inject SQL code.

Instructions:

Please update your deployment to the latest version.

 

Download (ZIP; click to download)md5
Ushahidi 2.1 (Tunis)