Frank196 Posted June 19, 2012 Share Posted June 19, 2012 Is this a new vulnerability or is the one that was patched on the 2/6 It say that No remedy available as of June 7, 2012 http://xforce.iss.net/xforce/xfdb/76006 0 Quote Link to comment Share on other sites More sharing options...
m8internet Posted June 19, 2012 Share Posted June 19, 2012 This would affect the visitors browser, not WHMCS The report refers to the functionality within the browser, when this script is run The attacker may then be able to use the cookie details and login as either the client or admin However the session should have killed and not run Try it yourself, copy a logged in session and paste into another browser session on a different computer, it has never worked for me 0 Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.