[RSS]
|
23 Mar 2006 23:05:58
Bucharest, Romania - March 24, 2006
Target IT today announced the immediate availability of the latest version of its open source content management software, XHP CMS v0.5.1.
Version 0.5.1 has been launched on March 24th 2006 in response to a critical vulnerability.
The addressed vulnerability is described here:
http://xhp.targetit.ro/index.php?page=3&box_id=34&action=show_single_entry&post_id=10
http://secunia.com/advisories/19353/
http://www.osvdb.org/di
|
|
23 Mar 2006 22:05:58
Bucharest, Romania - March 24, 2006
Target IT today announced the immediate availability of the latest version of its open source content management software, XHP CMS v0.5.1.
Version 0.5.1 has been launched on March 24th 2006 in response to a critical vulnerability.
The addressed vulnerability is described here:
http://xhp.targetit.ro/index.php?page=3&box_id=34&action=show_single_entry&post_id=10
http://secunia.com/advisories/19353/
http://www.osvdb.org/di
|
|
23 Mar 2006 10:00:08
Bad news... it seems we have some attention.
I have reports of an XHP exploit in the wild. I will detail below so you can protect yourselft.
The exploit is actually using a hole in the HTMLArea Filemanager plugin to write malicious files in the /filemanager directory. They first search Google for "Powered by XHP CMS" (consider removing that) to spot victims.
Then they attack HTMLArea (which is included in XHP > v0.4), upload malicious files to the disk and use the
|
|
23 Mar 2006 09:00:08
Bad news... it seems we have some attention.
I have reports of an XHP exploit in the wild. I will detail below so you can protect yourselft.
The exploit is actually using a hole in the HTMLArea Filemanager plugin to write malicious files in the /filemanager directory. They first search Google for "Powered by XHP CMS" (consider removing that) to spot victims.
Then they attack HTMLArea (which is included in XHP > v0.4), upload malicious files to the disk and use the
|
|
30 Jan 2006 09:39:55
A bug has been discovered in the blog module that makes some pages not display in certain browsers.To correct this problem, download this patch, unarchive it and replace your modules/blog/blog.xhpm.php file with the one provided in this archive.Click here to download the patch!
|
|
30 Jan 2006 08:39:55
A bug has been discovered in the blog module that makes some pages not display in certain browsers.To correct this problem, download this patch, unarchive it and replace your modules/blog/blog.xhpm.php file with the one provided in this archive.Click here to download the patch!
|
|
11 Dec 2005 13:45:03
XHP CMS - eXpandable Home Page is an easy to install, easy to use, easy to expand content management system (CMS) written in PHP and using MySQL as the database engine. It includes blog, image gallery, WYSIWYG content editor, aggregator , guestbook and it provides an API for contributed modules.
XHP CMS runs on both PHP 4 and PHP 5.
XHP CMS has great support for templates and internationalization.XHP CMS is open source software, licensed under the GNU GPL.
It's development has been st
|
|
11 Dec 2005 12:45:03
XHP CMS - eXpandable Home Page is an easy to install, easy to use, easy to expand content management system (CMS) written in PHP and using MySQL as the database engine. It includes blog, image gallery, WYSIWYG content editor, aggregator , guestbook and it provides an API for contributed modules.
XHP CMS runs on both PHP 4 and PHP 5.
XHP CMS has great support for templates and internationalization.XHP CMS is open source software, licensed under the GNU GPL.
It's development has been st
|
|
12 Nov 2005 11:30:57
After several requests from our users, we created a demo site where you can try XHP CMS before installing it on your server.The demo site is located at xhp.targetit.ro/demo. You have access to the admin section and you can play with all options.
|
|
12 Nov 2005 10:30:57
After several requests from our users, we created a demo site where you can try XHP CMS before installing it on your server.The demo site is located at xhp.targetit.ro/demo. You have access to the admin section and you can play with all options.
|
