Copied to clipboard

Flag this post as spam?

This post will be reported to the moderators as potential spam to be looked at


  • Eddie Foreman 215 posts 288 karma points
    Jul 20, 2014 @ 18:31
    Eddie Foreman
    0

    Advice on results from pentration testing

    Redacted

  • Sebastiaan Janssen 5060 posts 15522 karma points MVP admin hq
    Jul 20, 2014 @ 21:19
    Sebastiaan Janssen
    0

    Whoa whoa whoa!

    I've redacted this post until we can figure out if there's something that we (Umbraco HQ) need to do about this. It's great that you want to know what to do about potential issues but in the interest of responsible disclosure, I would implore you to always discuss potential security issues with us first so as not to expose thousands of websites out there with an attack vector.

    I'll get back to you as soon as we can evaluate the impact of the problems you posted.

  • Eddie Foreman 215 posts 288 karma points
    Jul 20, 2014 @ 23:27
    Eddie Foreman
    0

    Hi Sebastiaan,

    Okay thanks for the update.  I do need to get a working solution, so would be grateful if you could get back to me as soon as possible regarding the issues that I've raised.

    Thanks,
    Eddie

  • Sebastiaan Janssen 5060 posts 15522 karma points MVP admin hq
    Jul 22, 2014 @ 15:57
    Sebastiaan Janssen
    100

    Hi Eddie, we've published a security advisory today with additional concerns and fixes for them. http://umbraco.com/follow-us/blog-archive/2014/7/21/security-issues-found-in-umbraco-4,-6-and-7.aspx

  • Eddie Foreman 215 posts 288 karma points
    Jul 22, 2014 @ 17:36
    Eddie Foreman
    0

    Hi Sebastiaan, thankyou very much indeed. Eddie

  • Wing 17 posts 39 karma points
    Jul 24, 2014 @ 09:25
    Wing
    1

    Thanks Eddie for reporting. Umbraco gets better and better thanks to people like you.

Please Sign in or register to post replies

Write your reply to:

Draft