Serendipity < 0.7-beta3 Multiple Vulnerabilities
High Nessus Network Monitor Plugin ID 2336
SynopsisThe remote web server contains a script that is vulnerable to a SQL injection attack.
DescriptionThe remote host is running a vulnerable version of Serendipity Web Log. Version 0.7beta1 is prone to both cross-site scripting (XSS) and SQL Injection attacks. Versions prior to 0.7beta3 should also be upgraded.
SolutionUpgrade to version 0.7beta3 or higher.