All Products 
Username / Customer#
Password
Log In
 Hi,  |  Log Out
  • Site Search
  • Domain Search
  • WHOIS Domain Check
24/7 Support: (480) 505-8877
Hablamos Español
9 AM to 9 PM IST
7 days a week
Go Daddy Support

Search help articles, forums, and discussion groups

Vulnerabilities Found in LEPTON CMS

Date Submitted: 3-13-2012 by GoDaddy Expert  BetsyC

Not what you're looking for?
We want your feedback!

LEPTON CMS is a free, open-source Content Management System.

Affected Application: Versions up to and including 1.1.3.

Issue: Multiple vulnerabilities were discovered in the Lipton application including Cross-Site Scripting, SQL Injection and Directory Traversal. These vulnerabilities could let attackers execute unintended commands, access unauthorized data, hijack user sessions, access or modify tables within the application’s database, or redirect users to malicious sites.

Resolution: An update for LEPTON is available. For more information, visit the vendor’s website: http://www.lepton-cms.org/posts/security-release-lepton-1.1.4-52.php.

This information was compiled using information in the National Vulnerability Database. For more information about this issue, see the summary for CVE-2012-0998, CVE-2012-0999, and CVE-2012-1000.

To learn more about cross-site scripting, see Cross-Site Scripting.

To learn more about SQL Injections, see Injection Flaws.

Website Protection Site Scanner scans for this vulnerability, and many more. To learn about Site Scanner, see Getting Started with Website Protection Site Scanner.

Comments are closed.