Our site www.viart.com site is operated by latest Viart Shop 5 with default Clear design
Topic Information
Vera
Vera
Brief
We have received a report about potential hole in the script that is prone to cross site scripting vulnerability.
 
Description.
It is very unlikely that an administration script could be used by hackers because only site administrators have access to it but we decided to not take the risk and protect our users even from the slightest chance of attack and released a patch for this problem.
 
Solution.
We would recommend to download the fixed script from here:
http://www.viart.com/downloads/admin_articles-3.6.zip
 
Further, extract the above mentioned file into the 'admin' folder of your shop replacing an existing one. Don't forget to make a backup copy of the current file in case something goes wrong.
Last modified: 16 Feb 2011 9:26 AM
 
Ibn Saeed
Ibn Saeed
Do i need it if im using Viart 4.0.1 ?