<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.ting.dk"  xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Ting.dk - security</title>
 <link>http://www.ting.dk/taxonomy/term/196/0</link>
 <description></description>
 <language>da</language>
<item>
 <title>Sikkerhedsadvarsel: Webform</title>
 <link>http://www.ting.dk/blog/sikkerhedsadvarsel-webform</link>
 <description>&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;og_rss_groups&quot;&gt;&lt;ul class=&quot;links&quot;&gt;&lt;li class=&quot;og_links first last&quot;&gt;&lt;a href=&quot;/groups/dingting&quot;&gt;ding.TING&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/div&gt;&lt;p&gt;&lt;a href=&quot;http://www.ting.dk/blog/sikkerhedsadvarsel-webform&quot; target=&quot;_blank&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.ting.dk/blog/sikkerhedsadvarsel-webform#comments</comments>
 <category domain="http://www.ting.dk/tag/dingting">ding.TING</category>
 <category domain="http://www.ting.dk/tag/security">security</category>
 <group domain="http://www.ting.dk/groups/dingting" xmlns="http://drupal.org/project/og">ding.TING</group>
 <pubDate>Thu, 08 Mar 2012 09:19:15 +0000</pubDate>
 <dc:creator>kasperg</dc:creator>
 <guid isPermaLink="false">467 at http://www.ting.dk</guid>
</item>
<item>
 <title>Sikkerhedsadvarsel: Views Bulk Operations </title>
 <link>http://www.ting.dk/blog/sikkerhedsadvarsel-views-bulk-operations-0</link>
 <description>&lt;p&gt;Drupals security team har udsendt &lt;a href=&quot;http://drupal.org/node/1409436&quot;&gt;en advarsel vedr. modulet Panels op til og med version 3.9&lt;/a&gt;, som bliver benyttet i Ding op til og med 1.7:&lt;/p&gt;
&lt;p&gt;&amp;quot;The Panels module allows a site administrator to create customized layouts for multiple uses.&lt;/p&gt;
&lt;p&gt;The module doesn&amp;#39;t sufficiently sanitize administrator supplied data.
&lt;/p&gt;&lt;p&gt;This vulnerability is mitigated by the fact that an attacker must have a role with the permission &amp;quot;administer panel layouts&amp;quot;.&amp;quot;&lt;/p&gt;
&lt;div class=&quot;og_rss_groups&quot;&gt;&lt;ul class=&quot;links&quot;&gt;&lt;li class=&quot;og_links first last&quot;&gt;&lt;a href=&quot;/groups/dingting&quot;&gt;ding.TING&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/div&gt;&lt;p&gt;&lt;a href=&quot;http://www.ting.dk/blog/sikkerhedsadvarsel-views-bulk-operations-0&quot; target=&quot;_blank&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.ting.dk/blog/sikkerhedsadvarsel-views-bulk-operations-0#comments</comments>
 <category domain="http://www.ting.dk/tag/dingting">ding.TING</category>
 <category domain="http://www.ting.dk/tag/security">security</category>
 <group domain="http://www.ting.dk/groups/dingting" xmlns="http://drupal.org/project/og">ding.TING</group>
 <pubDate>Thu, 19 Jan 2012 06:10:14 +0000</pubDate>
 <dc:creator>kasperg</dc:creator>
 <guid isPermaLink="false">433 at http://www.ting.dk</guid>
</item>
<item>
 <title>Sikkerhedsadvarsel: Views Bulk Operations</title>
 <link>http://www.ting.dk/blog/sikkerhedsadvarsel-views-bulk-operations</link>
 <description>&lt;p&gt;Drupals security team har udsendt en advarsel vedr. modulet Views bulk operations, som bliver benyttet i Ding:&lt;/p&gt;
&lt;p&gt;&amp;quot;The Views Bulk Operations (VBO) module allows actions and rules to be run on&lt;/p&gt;
&lt;div class=&quot;og_rss_groups&quot;&gt;&lt;ul class=&quot;links&quot;&gt;&lt;li class=&quot;og_links first last&quot;&gt;&lt;a href=&quot;/groups/dingting&quot;&gt;ding.TING&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/div&gt;&lt;p&gt;&lt;a href=&quot;http://www.ting.dk/blog/sikkerhedsadvarsel-views-bulk-operations&quot; target=&quot;_blank&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.ting.dk/blog/sikkerhedsadvarsel-views-bulk-operations#comments</comments>
 <category domain="http://www.ting.dk/tag/dingting">ding.TING</category>
 <category domain="http://www.ting.dk/tag/security">security</category>
 <group domain="http://www.ting.dk/groups/dingting" xmlns="http://drupal.org/project/og">ding.TING</group>
 <pubDate>Thu, 22 Sep 2011 09:44:22 +0000</pubDate>
 <dc:creator>kasperg</dc:creator>
 <guid isPermaLink="false">331 at http://www.ting.dk</guid>
</item>
</channel>
</rss>
