|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Thomson Web Skill Vantage Manager
walter.sobchak
hushmail.com
Date: Thu Jul 28 2005 - 04:22:17 CDT
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
Hi
Is anyone here using Thomson Web Skill Vantage Manager for online training? If yes I suggest to take the system offline and to improve input validation.The system allows an SQL injection at the login - this gives a visitor easy access with complete Administrator privileges over the system. A malicious user could damage the installation.
Don't know if this has been posted already, hope this info is of use.
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]