Serendipity 2.0.1 – Blind SQL Injection

Posted by Curesec Research Team (CRT) on Sep 02

Serendipity 2.0.1: Blind SQL Injection
Security Advisory – Curesec Research Team

1. Introduction

Affected Product: Serendipity 2.0.1
Fixed in: 2.0.2
Fixed Version Link:
https://github.com/s9y/Serendipity/releases/download/2.0.2/serendipity-2.0.2.zip

Vendor Contact: serendipity () supergarv de
Vulnerability Type: Blind SQL Injection
Remote Exploitable: Yes
Reported to vendor:…

Leave a Reply