Page 1 of 1

Security Question

Posted: Sat Jun 05, 2010 10:25 am
by sentree
Hello,

found CMSMS via opensourcecms.com and it seems to fit my needs, but found also this (http://security.bkis.com/multiple-vulnerabilities-in-cms-made-simple/) on google and want to ask how critical it is?

I look for security because my old (and now deleted) install of "lightneasy cms" was hacked and used for spam.

Is it worth to take the risk and build my site on CMSMS or should I wait until it is fixed?

Bye Sentree

PS: Sorry for my "broken" english it is not my native language.

Re: Security Question

Posted: Sat Jun 05, 2010 12:35 pm
by reneh
CMS Made Simple team are very active to follow up on security vulnerabilities. I think we are one of the fastest cms'es out there to fix known vulnerabilities (after statistics - just can't find the link for those just now...).

Just this report from BKis we have been looking into for a while and so far can't find any true problems to worry about for outside-in intrusion. (On other part - If you let in an admin user with bad intentions, you have much bigger problems than this...)

We are still waiting for a response from BKis in Vietnam to get a detailed description of how this should be possible to perform....


Hope this clear up some of your questions...

Re: Security Question

Posted: Sun Jun 06, 2010 11:53 am
by sentree
Thank you for your reply.
I think I will build my Site on CMSMS and check the announcements periodically.