Hoteldruid not safe with Postgres

Post here if you think you have found a bug in hoteldruid or error in its documentation.

Moderator: marco

Post Reply
JustBob
Posts: 7
Joined: Wed Apr 23, 2014 8:52 pm

Hoteldruid not safe with Postgres

Post by JustBob » Wed May 07, 2014 11:40 am

I would like to warn everyone not to use Hoteldruid with Postgres.
There is a serious bug which enables attackers to inject arbitrary sql commands which can result in the takeover of the database!
How can I contact the dev in private?

marco
Posts: 1257
Joined: Tue Jul 05, 2005 6:00 pm
Location: Roma, Italia
Contact:

Re: Hoteldruid not safe with Postgres

Post by marco » Sat Dec 06, 2014 3:08 pm

Hello,
you can mail me at info@digitaldruid.net, as stated in the announcement post on this forum.

Regards,
Marco
Problems installing, configuring, upgrading?
Try the easiest way to use HotelDruid:
https://www.digitaldruid.net/hosted/index.php

Post Reply