[Dolibarr-dev] Vulnerabilities

2013-10-17 Par sujet Maxime Kohlhaas
Hi all, I just have been informed about this article : http://forelsec.blogspot.fr/2013/10/dolibarr-340-multiple-vulnerabilities.html I'll take a look into it ASAP but I wanted to share this with you first. Regards, -- *Maxime Kohlhaas Consultant associé **ATM Consulting* *+33 6 33 42 92 43* __

Re: [Dolibarr-dev] Vulnerabilities

2013-10-17 Par sujet Laurent Léonard
Hi Maxime, As specified at the end of the article you pointed, those vulnerabilities are fixed in Dolibarr 3.4.1: 10/06/2013 - Vendor notified of remotely exploitable vulnerabilities 10/07/2013 - Vendor acknowledges vulnerability, no timeline provided 10/11/2013 - Vendor states fix will be in th

Re: [Dolibarr-dev] Vulnerabilities

2013-10-17 Par sujet Sasa Ostrouska
On Thu, Oct 17, 2013 at 4:20 PM, Maxime Kohlhaas wrote: > Hi all, > > I just have been informed about this article : > http://forelsec.blogspot.fr/2013/10/dolibarr-340-multiple-vulnerabilities.html > > I'll take a look into it ASAP but I wanted to share this with you first. > > Regards, > > Thanks