more than 6 mnths ago me and @HauntITBlog reported serious SQLi vuln to a vendor... still not patched -> their clients exposed. what to do?
-
-
@bartblaze@HauntITBlog we found this vuln during pentest for one of their client (but same problem is in all versions of their CMS) -
@hasherezade@HauntITBlog So, pretty big vuln indeed. I would contact them again before doing anything - which is the most responsible imho. - Show replies
New conversation -
-
-
@bartblaze@HauntITBlog so we reported to both - to client and to CMS vendor. they neglected usThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.