Main menu

Forum


× Help Forum English

[SOLVED] iCagenda Component Security information

  • jackson
  • Auteur du sujet
  • Nouveau membre
  • Nouveau membre
Plus d'informations
il y a 10 ans 11 mois - il y a 10 ans 11 mois #6389 par jackson
I am considering using your Pro product but found this article; " iCagenda Component Multiple Vulnerabilities". www.exploit-db.com/exploits/22004/

Have you fixed these vulnerabilities?

Thanks
Jack
Dernière édition: il y a 10 ans 11 mois par Lyr!C. Raison: [SOLVED] related to a link outdated about an issue 1 year ago

Connexion ou Créer un compte pour participer à la conversation.

  • Lyr!C
  • Portrait de Lyr!C
  • Administrateur
  • Administrateur
  • Lead Developer
Plus d'informations
il y a 10 ans 11 mois - il y a 10 ans 11 mois #6401 par Lyr!C
Réponse de Lyr!C sur le sujet [SOLVED] iCagenda Component Security information
Funny to see so old pages still online!

I was in contact with darkpuzzle 18 months ago!

A kind man, but he has posted this is so many places, that some website have copied it, and many don't say that this vulnerability is solved since a long time! (the day after it was discovered, it was solved!)

A few months ago, Compass security has checked the extension. As for Joomla core, hackers are always trying new ways to hack, so it is important to check updates, and always keep extensions updated.

The link you attached was about the version 1.2.7, and today, it is 3.2.13 !

The problem with those sites, is that it's almost impossible to contact them, to ask someone to remove outdated information, and ask them to tell visitors about the fix! In fact they do it only as kids are playing a game, and don't mind about other people... Poor guys! And bad service for human!

Don't forget that iCagenda is published on the JED, and if a vulnerability is found in an extension (public alert on web) the extension is temporaly unpublished until a patch fix the vulnerability.
Since that day, i have added more and more security, better too much, than not enough (and i have learn how to hack, to know how to protect!)
You can check it on Joomla vel website : vel.joomla.org/resolved.html

Don't hesitate to read the ChangeLog (inside component, or soon on a dedicated online page) where all informations about iCagenda historic are keep in memory !)

I will edit the subject of your topic, because of this problem of search engine! ;-)

My best regards,
Lyr!C

Latest version : iCagenda 3.9.8
We recommend every user to keep iCagenda updated.
Don't forget to have your Joomla!™ up-to-date!

Do you like iCagenda?
I would appreciate if you could take 5 minutes to post a review on JED (Joomla Extensions Directory) .

Fichier attaché :

Dernière édition: il y a 10 ans 11 mois par Lyr!C.

Connexion ou Créer un compte pour participer à la conversation.

Modérateurs: Lyr!C
Temps de génération de la page : 0.103 secondes

 

Follow Us

Créez vos templates Joomla avec Template Creator CK

acymailing logo new