Page 1 of 1

Daily threat and vulnerability report (Rules users PHP vuln)

Posted: Thu Jan 07, 2016 6:53 pm
by mikeshinn
Please see this forum post for an explanation of the categories used in this report

ASL users

Summary: No update required.

Already protect against/Known Method/No update required

Serendipity 2.0.2 Cross Site Scripting (CVE-2015-8603)
OpenCart 2.1.0.1 Cross Site Scripting
ownCloud 8.2.1 / 8.1.4 / 8.0.9 Information Exposure (CVE-2016-1499)
PHP arbitrary code execution (versions prior to 5.5.31, 5.6.17, 7.0.2)

Not already protected against/New Method/Update Available

None.

Not already protected against/Doesnt protect against/Solution

None.

Potential Vulnerability/Solution

None.

Rules only users

Summary: PHP arbitrary code execution (versions prior to 5.5.31, 5.6.17, 7.0.2) vulnerability.

Already protect against/Known Method/No update required

Serendipity 2.0.2 Cross Site Scripting (CVE-2015-8603)
OpenCart 2.1.0.1 Cross Site Scripting
ownCloud 8.2.1 / 8.1.4 / 8.0.9 Information Exposure (CVE-2016-1499)

Not already protected against/New Method/Update Available

None.

Not already protected against/Doesnt protect against/Solution

PHP arbitrary code execution (versions prior to 5.5.31, 5.6.17, 7.0.2)

Potential Vulnerability/Solution

None.